#1Tools for dissecting, understanding, and reverse engineering malicious software behavior.
Kitploit recommended

Python Command-Line Ghidra MCP
Agent skills for solving CTF challenges - web exploitation, binary pwn, crypto, reverse engineering, forensics, OSINT, and more

An strace-like program for the Windows 'native' API

Symbolic verification tool for security protocols using multiset rewriting and constraint solving to prove secrecy, authentication, and equivalence…

Defense-in-depth bundle for MCP stdio servers: drop-in guardExec/guardSpawn wrappers, AST audit CLI, reference MCP server. Closes the Ox-Security…

Universal mobile devtool for Agents & Humans - control iOS Simulators, Android Emulators, and real devices from a single dashboard and CLI

Gixy-Next: NGINX Configuration Security Scanner & Performance Checker


A repository to share publicly available Velociraptor detection content

Dependency-free static analyzer for zk circuit soundness bugs in o1js/Mina zkApps and Noir circuits

Standalone reproducer for CVE-2026-90781: 1-byte OOB write in alsa-lib __snd_ctl_ascii_elem_id_parse() name= parsing (quoted and unquoted)

Static analysis CLI that scans AI-generated code for vulnerabilities like SQL injection, unsafe reflection, and hardcoded secrets, with SARIF export…

Hex Viewer/Editor/Analyzer compatible with Linux/Windows/MacOS

Seer - a gui frontend to gdb

Security scanner auditing Claude Code environments for CVE-2026-21852 pre-trust execution, hook hijacking, and eBPF lockdown.

PoC and GDB script assists in triggering CVE-2025-38352

Original research and PoC for a pre-auth stack buffer overflow via unbounded sscanf scanset in the Netis NC63 ipFilterList handler

Original research and PoC for a pre-auth Base64-decoded password stack buffer overflow in Netis NC63 login.cgi