- Quick look around VMP 3.x:
- Tickling VMProtect with LLVM:
- Analyzing Mutation-Coded - VM Protect and Alcatraz
- Reverse engineering a signed kernel driver ft. VMProtect
- Use of syscall and sysenter in VMProtect 3.1
- VMProtect Heaven's Gate Anti-Debug Bypass to VectorHandler
- exetools.com forum
- VMProtect 3: Virtualization-Based Software Obfuscation Pt. 2
- Russian forum post about VMProtect
- https://git.back.engineering/vmp3/vmdevirt
- https://git.back.engineering/vmp3/vmemu
- https://git.back.engineering/vmp3/vmprofiler
- https://github.com/0xnobody/vmpdump & https://github.com/0xnobody/vmpattack
- https://github.com/Ahora57/Baltica-29
- https://github.com/Ahora57/VMP_UTIL
- https://github.com/bilka00/vmprotect_import_fixer
- https://github.com/CabboShiba/VMPBypass
- https://github.com/can1357/NoVmp (uses VTIL)
- https://github.com/CertainLach/VMProtect-Rust-Example
- https://github.com/classic130/VMProtect-Source (incomplete, different committer and repo, yet another one ... but the latter is the most complete one? ... also this? ... and this?)
- https://github.com/colby57/VMP-Imports-Deobfuscator
- https://github.com/Colton1skees/VMPDevirt
- https://github.com/DarkBullNull/VMP.NET-Kill
- https://github.com/DNLINYJ/DetectVMP3
- https://github.com/dslee2022/VMProtect-CRC-Bypass
- https://github.com/Dy-Baby/VMProtect-devirtualization
- https://github.com/FaerHack/vmprotect-loader
- https://github.com/fjqisba/VmpHelper (only binaries, therefore not trustworthy)
- https://github.com/gmh5225/titan-1
- https://github.com/heruix/devmp
- https://github.com/JonathanSalwan/VMProtect-devirtualization
- https://github.com/killvxk/VMProtect-3-5-DEvirt
- https://github.com/KuNgia09/MyVMProtect
- https://github.com/LLVMParty/TicklingVMProtect (org)
- https://github.com/mibho/exploringVMP
- https://github.com/mike1k/VMPImportFixer
- https://github.com/mrexodia/VMProtectTest
- https://github.com/mzakocs/VirtualizationObfuscatorAnalysis
- https://github.com/nelfo/VMP-Hwid-Decoder
- https://github.com/omgkaka/vmp_runner (generic?)
- https://github.com/pgarba/UniTaint (taint-based attack on VMProtect)
- https://github.com/s0duku/vmprotect-3.5.1-leaked-console-precompiled
- https://github.com/saweol/vwaad (script for IDA)
- https://github.com/sh4m2hwz/devirt_vmp
- https://github.com/sh4m2hwz/devirt_vmprotect3
- https://github.com/sh4m2hwz/devirt_vmprotect3
- https://github.com/Shhoya/MutantKiller
- https://github.com/sodareverse/cppdumper
- https://github.com/strivexjun/XAntiDebug
- https://github.com/t0msa/vmp-analyzer
- https://github.com/void-stack/VMUnprotect
- https://github.com/void-stack/VMUnprotect
- https://github.com/void-stack/VMUnprotect.Dumper
- https://github.com/wallds/NoVmpy
- https://github.com/weak1337/Alcatraz (related to one of the above articles)
- https://github.com/yanglq1001/VMProtect
- https://github.com/yubie-re/vmp-virtualprotect-bypass
- based on the above https://github.com/kuma-dayo/Frida-VMProtect-Bypass
- https://github.com/zer0condition/Reversing-a-signed-driver