
CVE-2025-60719-AFD.SYS
Proof-of-concept and root-cause analysis of CVE-2025-60719, a use-after-free vulnerability in Windows afd.sys leading to local privilege escalation,…

Proof-of-concept and root-cause analysis of CVE-2025-60719, a use-after-free vulnerability in Windows afd.sys leading to local privilege escalation,…

Step-by-step tutorial on using Google's Gemma 4 E4B local AI model to reverse engineer a Windows crackme with Ghidra, including setup for local…

IATelligence is a Python script that will extract the IAT of a PE file and request GPT to get more information about the API and the ATT&CK matrix…

Program for determining types of files for Windows, Linux and MacOS.

An LLM extension for Ghidra to enable AI assistance in RE.

WinDbg x64 extension that disassembles live functions and uses an LLM to produce verified pseudocode.

UNIX-like reverse engineering framework and command-line toolset

iOS and macOS Decompiler

A decompiler-agnostic plugin for interacting with AI in your decompiler. GPT-4, Claude, and local models supported!

An open-source user mode debugger for Windows. Optimized for reverse engineering and malware analysis.

A MCP Debugger Server for Windows executables (x86 and x64). Exposes debugger functionality as MCP Tools for static / dynamic analysis of the…

Find zero-days while you sleep. DeepZero is an automated vulnerability research framework that parses, decompiles, and analyzes thousands of Windows…

Reconstructs legacy Windows binaries into C source by pairing Ghidra decompiler exports with local LLMs, producing compile-checked candidates and…

🔍 A Hex Editor for Reverse Engineers, Programmers and people who value their retinas when working at 3 AM.

Free and Open Source Reverse Engineering Platform powered by rizin

Unofficial revival of the well known .NET debugger and assembly editor, dnSpy

Unicorn CPU emulator framework (ARM, AArch64, M68K, Mips, Sparc, PowerPC, RiscV, S390x, TriCore, X86)

The ultimate AI-powered toolkit for python reverse engineering