Skip to content

farosato/angr-antievasion

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

43 Commits
 
 
 
 
 
 
 
 
 
 

Repository files navigation

angr-antievasion

An extension for the angr open source binary analysis and symbolic execution framework.

The extension mainly consists of a set of Win32 API patches for the angr framework that constrain the symbolic exploration in order to automatically pass common evasive checks.

This tool was originally developed as part of the Master's Thesis of the author.
The original release is available under the thesis tag.

The main ideas behind this project are described in the thesis Symbolic Execution of Malicious Software: Countering Sandbox Evasion Techniques.

About

Final project for the M.Sc. in Engineering in Computer Science at Università degli Studi di Roma "La Sapienza" (A.Y. 2016/2017).

Topics

Resources

Stars

Watchers

Forks

Packages

No packages published

Languages