dorothy2

Binary analyzer

A framework for analyzing suspicious binaries by configuring analysis environments and executing them in a sandboxed space

A malware/botnet analysis framework written in Ruby.

GitHub

197 stars
22 watching
35 forks
Language: Ruby
last commit: almost 3 years ago
Linked from 1 awesome list


Backlinks from these awesome lists:

Related projects:

RepositoryDescriptionStars
m4b/bingrepA tool to quickly inspect and analyze binary executables by parsing and coloring their contents.1,714
m4b/goblinA Rust-based library for parsing and analyzing binary formats1,206
carbonblack/bineeA binary emulation environment that introspects system interactions to analyze malware behavior.507
binref/refineryAn alpha version command-line tool for malware analysis and binary transformation687
martyx00/collareA tool for collaborative reverse engineering of binary files using multiple disassemblers and decompilers.135
nsacyber/bamA tool that gathers and analyzes information about Windows updates, binaries, and symbols to aid in their analysis.156
lunixbochs/usercornA dynamic binary analysis and emulation framework for a wide range of architectures and operating systems.893
packing-box/bintropyAn analysis tool for estimating the likelihood of binary compression or encryption43
binaryanalysisplatform/bapA comprehensive toolkit for analyzing and understanding binary programs2,079
airbus-seclab/bincatA toolset for analyzing binary code with IDA integration and support for value, taint analysis, type reconstruction, and detection of use-after-free and double-free bugs.1,706
mandiant/capaAn executable file analysis tool that identifies capabilities and potential malicious behaviors.4,944
stellarbear/yarasharpA C# wrapper around the Yara pattern matching library for detecting malware and analyzing binaries36
uxmal/rekoA binary decompiler that analyzes and reverse-engineers machine code binaries from various processor architectures.2,173
zeropointdynamics/zelosA platform for emulating and analyzing binary behavior at the system call level.409
reb311ion/replicaAn enhancement tool for Ghidra's binary analysis capabilities289