{"id":13395904,"url":"https://github.com/Cr4sh/smram_parse","last_synced_at":"2025-03-13T22:31:05.254Z","repository":{"id":47603097,"uuid":"71626933","full_name":"Cr4sh/smram_parse","owner":"Cr4sh","description":"System Management RAM analysis tool","archived":false,"fork":false,"pushed_at":"2021-04-05T15:02:32.000Z","size":22,"stargazers_count":72,"open_issues_count":2,"forks_count":16,"subscribers_count":7,"default_branch":"master","last_synced_at":"2024-07-31T18:16:00.129Z","etag":null,"topics":["analysis","dfir","firmware","forensics","investigation","reversing","security","smm","uefi"],"latest_commit_sha":null,"homepage":"","language":"Python","has_issues":false,"has_wiki":null,"has_pages":null,"mirror_url":null,"source_name":null,"license":"gpl-3.0","status":null,"scm":"git","pull_requests_enabled":true,"icon_url":"https://github.com/Cr4sh.png","metadata":{"files":{"readme":"README.TXT","changelog":null,"contributing":null,"funding":null,"license":"LICENSE.TXT","code_of_conduct":null,"threat_model":null,"audit":null,"citation":null,"codeowners":null,"security":null,"support":null}},"created_at":"2016-10-22T08:33:43.000Z","updated_at":"2024-07-17T14:29:11.000Z","dependencies_parsed_at":"2022-09-10T15:52:07.308Z","dependency_job_id":null,"html_url":"https://github.com/Cr4sh/smram_parse","commit_stats":null,"previous_names":[],"tags_count":0,"template":false,"template_full_name":null,"repository_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/Cr4sh%2Fsmram_parse","tags_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/Cr4sh%2Fsmram_parse/tags","releases_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/Cr4sh%2Fsmram_parse/releases","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/Cr4sh%2Fsmram_parse/manifests","owner_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners/Cr4sh","download_url":"https://codeload.github.com/Cr4sh/smram_parse/tar.gz/refs/heads/master","host":{"name":"GitHub","url":"https://github.com","kind":"github","repositories_count":243493355,"owners_count":20299637,"icon_url":"https://github.com/github.png","version":null,"created_at":"2022-05-30T11:31:42.601Z","updated_at":"2022-07-04T15:15:14.044Z","host_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub","repositories_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories","repository_names_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repository_names","owners_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners"}},"keywords":["analysis","dfir","firmware","forensics","investigation","reversing","security","smm","uefi"],"created_at":"2024-07-30T18:00:35.374Z","updated_at":"2025-03-13T22:31:04.913Z","avatar_url":"https://github.com/Cr4sh.png","language":"Python","funding_links":[],"categories":["Tools","Tools :hammer:"],"sub_categories":[],"readme":"\nSystem Management RAM analysis tool. \n\n**************************************************************************\n\nFor more information about this project please read the following article:\n\nhttp://blog.cr4.sh/2016/10/exploiting-ami-aptio-firmware.html\n\n\nTo use full capabilities of this tool you need to install UEFIDump (https://github.com/LongSoft/UEFITool/releases/tag/A32), ida-efiutils (https://github.com/snare/ida-efiutils) and edit corresponding variables in smram_parse.py code.\n\nThis tool was tested only with 6 generation Intel NUC firmware based on AMI Aptio V code base.\n\n\nFEATURES:\n\n  * SMRAM and SMST address information\n  * Loaded SMM drivers list\n  * SMM protocols list\n  * SMI entry address for each CPU\n  * SW SMI handlers list\n  * Root SmiHandlerRegister() handlers list\n  * Child SmiHandlerRegister() handlers list\n\n\nUSAGE:\n\n  $ smram_parse.py \u003cSMRAM_dump\u003e [flash_image_dump]\n\n  Output example: https://raw.githubusercontent.com/Cr4sh/smram_parse/master/EXAMPLE.TXT\n\n\nWritten by:\nDmytro Oleksiuk (aka Cr4sh)\n\ncr4sh0@gmail.com\nhttp://blog.cr4.sh\n\n","project_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2FCr4sh%2Fsmram_parse","html_url":"https://awesome.ecosyste.ms/projects/github.com%2FCr4sh%2Fsmram_parse","lists_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2FCr4sh%2Fsmram_parse/lists"}