#1Tools for dissecting, understanding, and reverse engineering malicious software behavior.
Kitploit recommended

Automated cross-platform sandbox that detonates suspicious files in isolated VMs/emulators, captures network and memory artifacts, and creates LLM…

Offensive & defensive Linux kernel security research focused on rootkit behavior, observable artifacts and detection.

Educational Linux kernel rootkit PoC exploring DKOM, syscall hooking, stealth, observability and defensive detection

Linux kernel source tree

IPED Digital Forensic Tool. It is an open source software that can be used to process and analyze digital evidence, often seized at crime scenes by…

Controlled vulnerability research and reproduction lab for CVE-2020-14343 in PyYAML

OSS-Fuzz - continuous fuzzing for open source software.

Self-hosted AI workspace with agents, skills, and tools (Gmail, Calendar) that runs entirely on your own provider API keys (BYOK). Bring your own…

Reverse engineering framework in Python

SecureAI-Scan is a CLI tool that scans TypeScript and JavaScript codebases for security issues specific to AI-powered apps — prompt injection, MCP…

Sandboxie Plus & Classic

iOS/macOS Research Swiss Army Knife

Write tests against structured configuration data using the Open Policy Agent Rego query language

The reverse-engineering expert agent: plans its own analysis path, derives every fact from raw evidence, and converges under mechanical verification…

Research repository for CVE-2026-68121, a Linux kernel PPPoE use-after-free in pppoe_sendmsg() enabling local privilege escalation, with PoC,…

Research repository for CVE-2026-81000 (TUNderflow), a Linux kernel TUN/TAP receive headroom integer underflow enabling local privilege escalation,…

Headless Binary Ninja MCP server — giving AI agents deep reverse-engineering capabilities via 180 tools.

Multi-architecture disassembly framework providing a lightweight, thread-safe API for binary analysis, reverse engineering, and malware research…