bluepill

Malware analysis framework

An open-source framework to analyze and study malware behavior while evading detection by anti-analysis techniques.

BluePill: Neutralizing Anti-Analysis Behavior in Malware Dissection (Black Hat Europe 2019, IEEE TIFS 2020)

GitHub

123 stars
9 watching
22 forks
Language: C++
last commit: almost 5 years ago
Linked from 1 awesome list

debuggermalwaremalware-analysismalware-researchreverse-engineering

Backlinks from these awesome lists:

Related projects:

RepositoryDescriptionStars
rieck/malheurA tool for automatically analyzing malware behavior and identifying patterns and classes.369
diogo-fernan/malsubA Python framework that provides an API interface to multiple online services for analyzing malware and threat intelligence368
trustedsec/pplfaultdumpbofTools for analyzing PPLFault-related malware behavior on Windows 10134
cristianzsh/frekiA platform for analyzing malware and performing reverse engineering on binary files424
uqcyber/coldpressAutomates malware analysis workflow by extracting features and indicators of compromise from malicious files using various tools and libraries.16
p4t12ick/ypsilonAn automated testing environment for security use cases using real malware and various tools165
airbnb/binaryalertReal-time malware detection and alert system for AWS S3 files1,415
tencent/habomalhunterAutomates malware analysis on Linux systems to extract and analyze static and dynamic features734
cyb3rmx/qu1cksc0peAn all-in-one malware analysis tool that provides detailed information about suspicious files and executables.1,348
spiderlabs/malware-analysisA collection of tools and scripts for analyzing malware245
rew-sploit/rew-sploitAnalyzes and dissects malware and obfuscated code from various attack frameworks like Metasploit and Cobalt Strike139
fortinet/ips-bph-frameworkAn automation framework for analyzing malware in virtual machines, using scripts and plugins to perform analysis tasks.29
weisong-ucr/mab-malwareAn open-source reinforcement learning framework to generate adversarial examples for malware classification models.41
mandiant/capaAn executable file analysis tool that identifies capabilities and potential malicious behaviors.4,944
idiom/pftriageTool to analyze files during malware analysis and triage by extracting properties and detecting malicious indicators.77