vivisect
Pure python disassembler, debugger, emulator, and static analysis framework
Decision gist · record as of 2026-08-14
Yes. Vivisect is actively maintained, has low install friction, carries no known vulnerabilities, and is licensed permissively. It fills a genuine need for pure-Python binary analysis. Install it if you do reverse engineering, malware analysis, or security research; skip it if you need only simple disassembly or prefer established alternatives like IDA Pro or Ghidra.AI-flagged interpretation of the facts on this page — verify before relying
Before you install
- Requires Python 3.8 or later; Python 2 support ended before v1.0.0.
- Old Python 2 workspaces are not compatible with Python 3 without conversion.
- Low install friction with a pure-Python wheel distribution.
License · maintenance · safety
Apache License 2.0 (permissive) — Licensed under Apache License 2.0 (permissive), allowing commercial and private use with minimal restrictions.
last release 2026-03-31 (136 days) · last repo commit 2026-08-14 · 996 stars
0 known vulnerabilities (OSV.dev, 2026-08-14) · 96,015 downloads/mo, #13,235 on PyPI
Alternatives
Verify before relying
pip install vivisect
import vivisect
vw = vivisect.VivWorkspace()
vw.loadBinary('path/to/binary')- Whether the GUI components (available via pip install vivisect[gui]) are fully functional and documented.
- Performance characteristics and scalability limits for large binaries or complex analysis tasks.
- Specific symbolic execution capabilities and their scope compared to other frameworks.
What it is and what it does
Vivisect is a comprehensive binary analysis framework written in pure Python that combines disassembly, static analysis, symbolic execution, and debugging into a single toolkit. It reads and analyzes compiled binaries, allowing security researchers and reverse engineers to understand program behavior without source code. The framework includes both programmatic APIs for scripting analysis tasks and a GUI debugger (vdb) for interactive exploration.
The package depends on pyasn1, pyasn1-modules, cxxfilt, msgpack, and pycparser to handle binary formats, name demangling, and data serialization. It targets Python 3.8 and later, with workspaces stored in msgpack format for cross-version compatibility. The project is actively maintained with recent commits and a growing user base, making it suitable for security research, malware analysis, and educational reverse engineering.
Use it for
- Analyze malware samples to understand their structure, behavior, and capabilities without executing them.
- Perform static analysis on compiled binaries to identify vulnerabilities or suspicious code patterns.
- Debug running processes interactively using the vdb debugger component.
- Automate binary analysis tasks via Python scripts using the framework's programmatic API.
- Learn assembly language and reverse engineering techniques with an interactive disassembler.
Worth the install?
AI-flagged interpretation of the facts on this page. Verify before relying on it.
Yes.
Vivisect is actively maintained, has low install friction, carries no known vulnerabilities, and is licensed permissively. It fills a genuine need for pure-Python binary analysis. Install it if you do reverse engineering, malware analysis, or security research; skip it if you need only simple disassembly or prefer established alternatives like IDA Pro or Ghidra.
Install
vivisect on PyPI
Before you install
Low install friction with a pure-Python wheel distribution. Actively maintained with a recent release; last commit on 2026-08-14 and 136 days since the latest release indicate ongoing development.
Requires Python 3.8 or later; Python 2 support ended before v1.0.0. Old Python 2 workspaces are not compatible with Python 3 without conversion.
License in practice
Licensed under Apache License 2.0 (permissive), allowing commercial and private use with minimal restrictions.
Quickstart
pip install vivisect
import vivisect
vw = vivisect.VivWorkspace()
vw.loadBinary('path/to/binary')
Verify before relying
- Whether the GUI components (available via pip install vivisect[gui]) are fully functional and documented.
- Performance characteristics and scalability limits for large binaries or complex analysis tasks.
- Specific symbolic execution capabilities and their scope compared to other frameworks.
Package facts
| License | Apache License 2.0 permissive |
| Python support | Supports the current Python release >=3.8 |
| Install friction | Low. Pure-Python wheel |
| Runtime dependencies | 5 packagespyasn1pyasn1-modulescxxfiltmsgpackpycparser |
| Maintenance | Actively maintained 136 days since the last release |
| Last repo commit | |
| First released | |
| Downloads | 96,015 / month, #13,235 on PyPI 30-day window, as of 2026-08-14 |
| Known vulnerabilities | None known OSV.dev, checked 2026-08-14 |
| Classifiers | License :: OSI Approved :: Apache Software LicenseProgramming Language :: Python :: 3.8Topic :: SecurityTopic :: Software Development :: DebuggersTopic :: Software Development :: Disassemblers |
Evidence: vivisect-1.3.2-py3-none-any.whl
Tags
Let your AI agent find packages like this
Example. Real query, live index.
You found this page by searching. An agent finds it by wishing: SkillFed indexes 14,416 PyPI packages by what they can do, searchable in plain language.
wish › “static analysis framework”
- vivisectVivisect is a pure-Python disassembler, debugger, emulator, and…
- robotframework-robocopRobocop is a static code analysis tool and formatter for Robot…
- slither-analyzerSlither is a static analysis framework for Solidity and Vyper smart…
Give your agent the search over MCP, or paste the wish link into any chat.
More Security packages
Provides Python bindings to the FreeDesktop.org Secret Service API for securely storing and retrieving passwords and secrets through GNOME Keyring, KWallet, or KeePassXC.
MSAL for Python handles OAuth2 and OpenID Connect authentication with Microsoft identity services, managing token acquisition, caching, and refresh for applications integrating with Microsoft Entra ID, Microsoft Accounts, and Azure AD B2C.
joserfc implements JOSE standards (JWS, JWE, JWK, JWT, and related RFCs) for signing, encrypting, and managing JSON-based cryptographic tokens in Python.
Authlib provides a complete implementation of OAuth 1.0, OAuth 2.0, and OpenID Connect 1.0 for building both authentication clients and servers, with built-in support for JWS, JWK, JWA, and JWT standards.
Provides low-level CFFI bindings to the official Argon2 password hashing algorithm for use by libraries and applications that need direct access to Argon2 without higher-level abstractions.
ADAL for Python authenticates applications with Azure Active Directory to obtain tokens for accessing Azure AD-protected resources.
Install only if maintaining existing code that already depends on it, and plan a migration.
See also viv-utils · nvidia-cuda-nvdisasm · angr · pudb · xdis · smda · unicorn · pipecat-ai-whisker · pcodedmp