Semantic analysis engine for detecting vulnerability fixes in Windows kernel driver patches — 58 YAML rules, Ghidra decompilation, reachability tracing, and scoring
-
Updated
Feb 26, 2026 - Python
Semantic analysis engine for detecting vulnerability fixes in Windows kernel driver patches — 58 YAML rules, Ghidra decompilation, reachability tracing, and scoring
match functions in binaries by what they do, not what their bytes look like. behavioral function fingerprinting via microexecution.
CVE patch-diff root-cause analyzer for iOS, Linux, and Windows workflows with RE backends, LLM routing, confidence scoring, and export packs.
Fast, open binary diff for ELF/PE — reports structural changes and, for x86-64, which functions were added, removed, or modified. Rust CLI + library.
iOS Messages JPEG XL delivery-surface probe and patch-diff notes for CVE-2026-28956.
Clean-room Rust binary analysis: loaders, decompilation, patch diffing, patch preview, and MCP-driven reverse-engineering workflows.
BinExport for Ghidra 12.x (12.1.2). Patched build of google/binexport that fixes the NoSuchFieldError LabelString$LabelType.CODE_LABEL crash (issue #166) blocking BinExport + BinDiff on Ghidra 12.0+. Prebuilt Ghidra extension + headless export. Ghidra → BinExport → BinDiff pipeline restored.
To associate your repository with the patch-diffing topic, visit your repo's landing page and select "manage topics."