AutoCC

Covert channel analyzer

A tool that automatically discovers covert channels in hardware by analyzing machine states after context switches.

Methodology that leverages FPV to automatically discover covert channels in hardware that is time-shared between processes. AutoCC operates at RTL to exhaustively examine any machine state left by a process after a context switch that creates an execution difference.

GitHub

15 stars
2 watching
7 forks
Language: Standard ML
last commit: almost 2 years ago
Linked from 1 awesome list

covert-channelformal-verificationfpvhardwaresecurity

Backlinks from these awesome lists:

Related projects:

RepositoryDescriptionStars
ssteo/hitbsecconf2021ams-pocA proof-of-concept demonstrating a covert channel for command and control (C&C) and data exfiltration using AWS GuardDuty in a post-DNS era2
jpcertcc/aa-toolsA collection of tools and scripts for analyzing malware, reverse engineering malware, and decrypting encrypted data455
trustedsec/trevorc2A tool that enables covert command execution by masking communication through a legitimate website.1,233
codingo/reconnoitreAutomates reconnaissance and service enumeration of network hosts to gather information and write recommendations for further testing.2,124
hiddenillusion/analyzepeAnalyzes PE files by combining data from various tools to generate a centralized report.204
bats3c/shad0wA post-exploitation toolset designed to operate covertly on heavily monitored environments.2,058
peek/peek-dalliA tool to inspect and analyze Memcache commands made through Dalli during application requests3
secrary/makinAn analysis tool that reveals anti-debugging and anti-VM techniques used by malware samples.735
objective-see/donotdisturbDetects unauthorized physical access to laptops and alerts the user.296
daybr4ak/c2reverseproxyA tool allowing covert communication between a compromised machine and a command and control server without exposing the machine to the network.480
snaffcon/snafflerA tool designed to help pentesters and red teamers find potentially compromised files in large networks by leveraging Active Directory information.2,172
tomchop/malcomAnalyzes network traffic to detect malware communication and behavior1,158
3coresec/automataAutomated tool to detect errors in security monitoring and measure effectiveness of SIEM rules against various behaviors.53
veinsoftheearth/rivgraphA Python package for converting binary mask of channel networks into a directed graph with various metrics and analysis tools.85
ledger-donjon/lascarA Python library designed to facilitate side-channel analysis by providing classes and functions to simplify the process.377