qilingframework / qilingframework/qiling

Collection of works, presentations, blogpost, etc for Qiling related projects

Open
#134 0 comments 0 reactions 0 assignees View on GitHub

Nobody has claimed this yet.

Dominant language
Python
Stars
6.1k
Forks
798
Avg merge
1d 1h
Merged PRs (30d)
9

Description

Official Youtube

Showcase

  • Emotet's embedded C2
  • dragonfly
  • pwnservice
  • Karton Unpacker
  • Qualcomm Sahara / Firehose Attack Client / Diag Tools
  • FileInsight-plugins
  • efi_fuzz
  • vacation3

Tutorial

  • Qiling Lab 01
  • Arm64 binary emulation using Qiling Framework

Papers

  • On the Effectiveness of Binary Emulation in Malware Classification
  • LoRaWAN’s Protocol Stacks: The Forgotten Targets at Risk
  • FIRMGUIDE: Boosting the Capability of Rehosting Embedded Linux Kernels through Model-Guided
    Kernel Execution
  • EDGE OF THE ART IN VULNERABILITY RESEARCH VERSION 4 OF 4
  • Dragonfly: next generation sandbox

Writeup

  • [Fuzzing] Qiling 框架在 Ubuntu22.04 rootfs下遇到 CPU ISA level 错误的临时解决方案
  • Unionware Writeup Part A [UnionCTF 2021]
  • Dynamic analysis of firmware components in IoT devices
  • [原创]一种新的Android Runtime环境仿真及调试方法
  • A Sneak Peek into Smart Contracts Reversing and Emulation
  • QILING: un framework para emular binarios muy útil para el análisis de malware
  • Reversing embedded device bootloader (U-Boot)
  • PancakeCon CTF "Crack" Challenge
  • TP-Link XDR-5430-V2 研究分享 - 第一章
  • Leveraging Qiling for Kport strings decryption
  • Decrypt configuration files like exactly how Huawei ONT does
  • Hunting IcedID and unpacking automation with Qiling
  • [Mal Series # 17] Binary Emulation with Qiling Framework
  • Automatic unpacking with Qiling framework
  • WINTERN 2020: IOT FIRMWARE ANALYSIS
  • Unpacking In-Memory Malware with Qiling
  • Qiling: A true instrumentable binary emulation framework
  • Playing with PE Files, Packers and Qiling Framework
  • Unpacking RAGNARLOCKER via emulation
  • Reproducing n-day vulnerabilities and writing N-day based fuzzer with Qiling
  • Emulated a Netgear router binary using qiling to reverse a backdoor
  • Using Qiling Framework to Unpack TA505 packed samples
  • [PT007] Simulating and hunting firmware vulnerabilities with Qiling
  • Decrypt Aisuru Bot Encoded Strings with Qiling Framework
  • Brute-Force Flareon2015 Challenge#2 with Qiling
  • Moving From Manual Reverse Engineering of UEFI Modules To Dynamic Emulation of UEFI Firmware
  • Qiling & Binary Emulation for automatic unpacking
  • [原创]使用Qiling IDA插件解密Mirai病毒数据
  • Part II: Analyzing a buffer overflow in the DLINK DIR-645 with Qiling framework, Part II
  • Part I: Analyzing a buffer overflow in the DLINK DIR-645 with Qiling framework and Ghidra.
  • Automated dynamic import resolving using binary emulation
  • Using Qiling to resolve obfuscated import on windows
  • Dive deeper – Analyze real mode binaries like a Pro with Qiling Framework
  • How to reproduce CVE-2020-8962 with Qiling Framework
  • Qiling For Malware Analysis: Part 1 and Part 2
  • PE Emulation With Code Coverage Using Qiling and Dragon Dance
  • Automated malware unpacking with binary emulation
  • ByteBandits CTF 2020 - Autobot
  • Qiling Scripting and Simple RE Task
  • Certego research at the HITB Security Conference:
  • EFI_DXE_Emulator: Qiling support in the works!
  • 多架构二进制 Fuzzing 的几种环境搭建
  • Phân tích mẫu mã độc khai thác lỗ hổng Microsoft Office Equation Editor
  • Qiling Fuzzer
  • Csaw CtF

Media

Conference

Podcast

Youtube

Contributor guide

No contributing guide indexed for this repository

First steps

  1. Read the whole issue, then the project's contributing guide.
  2. Comment on the issue to say you are picking it up — it saves two people doing the same work.
  3. Fork the repository and make your change on a branch.
  4. Open a pull request that references the issue number.

Research direction

Start by inspecting the repository's documentation structure to find the intended page or navigation entry for this collection; the issue names no file or test. Review the categories and links in the issue, then add the relevant resources in the project's established documentation format. Done means the collection is discoverable, organized, and links are preserved.

Written by the indexing model from the issue text.

Assessment

Domain
documentation
Issue type
Documentation
Difficulty
3/5
Estimated time
1-2 days
Activity status
Stale
Clarity
Needs clarification
Newbie friendliness
25/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.