Skip to content
@reverseame

RME-DisCo Research Group

Official repository of RME, a part of the DisCo research group from University of Zaragoza focused on software and systems security

Popular repositories

  1. sigcheck Public

    Volatility plugin to validate Authenticode-signed processes, either with embedded signature or catalog-signed

    Python 13 2

  2. A pintool for protecting a sandbox application of common anti-virtualmachine and anti-sandbox detection techniques

    C++ 6 1

  3. winesap Public

    Volatility plugin to search for all Autostart Extensibility Points (AESPs)

    Python 6

  4. Volatility plugin to calculate and compare Windows processes fuzzy hashes

    Python 5

  5. rop3 Public

    A tool to search for gadgets, operations, and ROP chains using a backtracking algorithm in a tree-like structure

    Python 5

  6. malscan Public

    Volatility plugin to detect malicious code thanks to ClamAV

    Python 1 1

Repositories

  • Python 0 GPL-3.0 0 0 0 Updated Jan 17, 2022
  • similarity-unrelocated-module Public

    Volatility plugin to yield and compare similarity digest of modules on execution.

    Python 1 GPL-3.0 0 1 0 Updated Dec 29, 2021
  • rop3 Public

    A tool to search for gadgets, operations, and ROP chains using a backtracking algorithm in a tree-like structure

    Python 5 GPL-3.0 0 1 0 Updated Dec 29, 2021
  • instant-messaging-artifact-finder Public

    Tool to find memory artifacts present in instant messaging applications.

    Python 0 GPL-3.0 0 0 0 Updated Dec 10, 2021
  • asistencia-aula-EINA-telegram-bot Public

    Bot de Telegram para facilitar la entrada de datos de asistencia presencial en aulas de la EINA

    Python 1 GPL-3.0 0 0 0 Updated Oct 4, 2021
  • windows-memory-extractor Public

    Tool to extract contents from the memory of Windows systems.

    C++ 1 GPL-3.0 1 0 0 Updated Sep 13, 2021
  • chiton Public

    Chiton is a Python library to exfiltrate data encapsulating the data into IoT protocol’s packets

    Python 1 GPL-3.0 0 0 0 Updated Aug 23, 2021
  • residentmem Public

    Volatility plugin to obtain the number of the resident memory pages per module (exe or dll) and per driver from a Windows memory dump.

    Python 0 GPL-3.0 0 0 0 Updated May 11, 2021
  • EvalMe Public

    EvalMe, an evaluation and benchmarking tool.

    Python 0 GPL-3.0 0 0 0 Updated Jan 20, 2021
  • sigcheck Public

    Volatility plugin to validate Authenticode-signed processes, either with embedded signature or catalog-signed

    Python 13 GPL-3.0 2 1 0 Updated Jan 5, 2021

Top languages

Loading…

Most used topics

Loading…