{"repo":"qilingframework/qiling","free":true,"listed":false,"github":"https://github.com/qilingframework/qiling","clone":"git clone https://github.com/qilingframework/qiling.git","description":"A True Instrumentable Binary Emulation Framework","language":"Python","stars":6064,"topics":["binary","emulator","framework","unicorn-emulator","malware","analysis","qiling","reverse-engineering","cross-architecture","uefi"],"license":"GPL-2.0","category":"security-tools","readme_excerpt":"--- Qiling's use case, blog and related work Qiling is an advanced binary emulation framework, with the following features: - Emulate multi-platforms: Windows, macOS, Linux, Android, BSD, UEFI, DOS, MBR. - Emulate multi-architectures: 8086, X86, X86 64, ARM, ARM64, MIPS, RISC-V, PowerPC. - Support multiple file formats: PE, Mach-O, ELF, COM, MBR. - Support Windows Driver (.sys), Linux Kernel Module (.ko) & macOS Kernel (.kext) via Demigod. - Emulates & sandbox code in an isolated environment. - Provides a fully configurable sandbox. - Provides in-depth memory, register, OS level and filesystem level API. - Fine-grain instrumentation: allows hooks at various levels (instruction/basic-block/memory-access/exception/syscall/IO/etc.) - Provides virtual machine level API such as saving and restoring the current execution state. - Supports cross architecture and platform debugging capabilities. - Built-in debugger with reverse debugging capability. - Allows dynamic hot patch on-the-fly running code, including the loaded library. - True framework in Python, making it easy to build customized security analysis tools on top. Qiling also made its way to various international conferences. 2022: - Black Hat, EU - Black Hat, MEA 2021: - Black Hat, USA - Hack In The Box, Amsterdam - Black Hat, Asia 2020: - Black Hat, Europe - Black Hat, USA - Black Hat, USA (Demigod) - Black Hat, Asia - Hack In The Box, Lockdown 001 - Hack In The Box, Lockdown 002 - Hack In The Box, Cyberweek - Nullcon 2019","default_branch":null,"files":null,"tree":[],"storefront":"/r/qilingframework","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/qilingframework/qiling/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}