#2Tools for observing malware behavior in isolated environments to understand its actions and impact.
Kitploit recommended

Signature-based detection of malware features based on Windows API call sequences. It's like YARA for sandbox API traces!

Curated collection of LLVM security resources covering binary lifting, code obfuscation, static analysis, symbolic execution, sanitizers, and…

A True Instrumentable Binary Emulation Framework

eBPF-based packet analyzer that captures network traffic with automatic process, container, and Kubernetes pod metadata annotation, supporting…

Manage OpenClaw in your team (Enterprise) by providing it compute infrastructure, tool integration, Authentication and security primitives

Firmware reverse engineering of the Philips PM5139 / PM5138A / PM5136 function generators: 8051 emulators used as measuring instruments, 35 sections…

EMBA - The firmware security analyzer

An event driven multi-core process debugging, tracing, and manipulation framework.

A benchmark for LLM-driven bug discovery: 77 challenges across 43 open-source projects (C/C++/Java).

AFL + DynamoRIO = fuzzing binaries with no source code on Linux

Sandbox untrusted code with safe access to the host.

Frida toolkit that bypasses SSL/TLS certificate pinning on Android apps, hooking Java TrustManager, OkHttp, Conscrypt, and native OpenSSL/BoringSSL…

UNIX-like reverse engineering framework and command-line toolset

Build anti-detection Frida server from source. ~90 patches covering 16 detection vectors, weekly auto-builds with random names.

A MCP Debugger Server for Windows executables (x86 and x64). Exposes debugger functionality as MCP Tools for static / dynamic analysis of the…

iOS Debugging Tool 🚀

Automated hypervisor-level malware analysis sandbox with agentless guest introspection, web-based result exploration, and guided installer for…

Web application security scanner created by lcamtuf for google - Unofficial Mirror