RetDec Logo

RetDec

0
Free
Visit Website

RetDec is a retargetable machine-code decompiler based on LLVM. The decompiler supports various file formats such as ELF, PE, Mach-O, COFF, AR, Intel HEX, and raw machine code, as well as architectures like Intel x86, ARM, MIPS, PIC32, PowerPC, x86-64, and ARM64. It offers features like static analysis, compiler and packer detection, instruction decoding, library code removal, debugging information extraction, instruction idiom reconstruction, and C++ class hierarchy detection.

FEATURES

ALTERNATIVES

Yabin creates Yara signatures from malware to find similar samples.

A tool to fuzz query strings and identify vulnerabilities

A strings statistics calculator for YARA rules to aid malware research.

A detailed analysis of malicious packages and how they work

A script to detect and remove Canary Tokens with simple signature-based detections.

A blog post discussing INF-SCT fetch and execute techniques for bypass, evasion, and persistence

A simple XSS scanner tool for identifying Cross-Site Scripting vulnerabilities

Generates a YARA rule to match basic blocks of the current function in IDA Pro

PINNED