Top Python Tools for Malware Analysis. – PythonStacks (pythonstacks.com)
12 days ago | 2 comments

Unicorn is missing from that list.

The python CPU emulator with full program counter (PC) and general (and other CPU-specific) register set controls.

I use it to catch fileless malware in the second fastest dynamic manner. Also good for detecting Rowhammer/SPECTRE behaviors.

Disclaimer: one of the contributors and a contractor that frequently deploy this.


Sounds really interesting.

I suppose that, since clamd and radare2 are mentioned, it’d be fair to mention unicorn too.

