PyREBox is a Python scriptable Reverse Engineering sandbox. It is based on QEMU, and its goal is to aid reverse engineering by providing dynamic analysis and debugging capabilities from a different perspective. PyREBox allows to inspect a running QEMU VM, modify its memory or registers, and to instrument its execution, by creating simple scripts in python to automate any kind of analysis. QEMU (when working as a whole-system-emulator) emulates a complete system (CPU, memory, devices...). By using VMI techniques, it does not require to perform any modification into the guest operating system, as it transparently retrieves information from its memory at run-time.
Several academic projects such as DECAF, PANDA, S2E, or AVATAR, have previously leveraged QEMU based instrumentation to overcome reverse engineering tasks. These projects allow to write plugins in C/C++, and implement several advanced features such as dynamic taint analysis, symbolic execution, or even record and replay of execution traces. With PyREBox, we aim to apply this technology focusing on keeping the design simple, and on the usability of the system for threat analysts.
Looking for some programs similar to PyREbox? Here are the top-recommended programs we found. Let's take a look if there's anything out there that helps you on whatever platform you're using.
Cuckoo Sandbox is a modular, automated malware analysis system. Running from command-line on a Linux or Mac host, it uses python and virtualization (VirtualBox...
Features:
Interactive malware hunting service. Any environments ready for live testing most type of threats. Without install. Without waiting. Interactive online malware...
Features:
REVERSS can analyze executables, URLs and PCAP files. It also show statistical data about found infections and the affected countries, etc. You can send the samples...
Features:
VMRay is an agentless, hypervisor-based sandboxed automated malware testing environment.
Features:
VxStream Sandbox is an innovative and fully automated malware analysis system that includes the unique Hybrid Analysis technology. It is available as a standalone...
Features:
A tool that has been designed to analyze the behaviour of processes and the changes made to system and then evaluate if they are malware suspicious.
Features:
Add your reviews & share your experience when using PyREbox to the world. Your opinion will be useful to others who are looking for the best PyREbox alternatives.
Popular Alternatives
iOS Alternatives
Android Alternatives
Copyright © 2021 TopAlter.com
Sites we Love: AnswerBun, MenuIva, UKBizDB, Sharing RPP