Alon Mazor's starred repositories

pe-sieve

Scans a given process. Recognizes and dumps a variety of potentially malicious implants (replaced/injected PEs, shellcodes, hooks, in-memory patches).

Language:C++License:BSD-2-ClauseStargazers:3013Issues:0Issues:0

ida_ifl

IFL - Interactive Functions List (plugin for IDA Pro)

Language:PythonStargazers:421Issues:0Issues:0

SysWhispers

AV/EDR evasion via direct system calls.

Language:AssemblyLicense:Apache-2.0Stargazers:1763Issues:0Issues:0