
pftriage
Python tool and library to help analyze files during malware triage and analysis.

Python tool and library to help analyze files during malware triage and analysis.

Zip file format fuzzer and multi-tool.

Static-first research tool for unpacking Nuitka-compiled binaries: extracts constants, modules, recovers .pyc files, and generates analysis reports.

Command-line and GUI tool for decompiling Android Dex and APK files into readable Java source code, with resource decoding, deobfuscation, and Smali…

Rule-based static and dynamic analysis tool that identifies capabilities in PE, ELF, .NET, and shellcode files, mapping them to MITRE ATT&CK…

Ghidra plugin that automates UEFI firmware analysis by identifying known GUIDs, protocols, SMI handlers, and interrupt functions, with headless…

Extract files from any kind of container formats

SigFlip is a tool for patching authenticode signed PE files (exe, dll, sys ..etc) without invalidating or breaking the existing signature.

Living Off The Land Binaries And Scripts - (LOLBins and LOLScripts)

Quickly find differences and similarities in disassembled code

pefile is a Python module to read and work with PE (Portable Executable) files

Decompiles serialized V8 bytecode (JSC files) into high-level readable JavaScript-like code, with support for multiple V8 versions, tree output, and…

Java bytecode analyzer customizable via JSON rules

Generates crafted TIFF/DNG files to trigger out-of-bounds writes in Samsung's libimagecodec.quram.so, including binary analysis and reproduction…

Jailbreak-only iOS utility that decrypts installed app executables and dumps them as .ipa or raw binary files for security research and…

Simple decrypter for Java AdWind, jRAT, jBifrost trojan

Analysis for stage1 shellcode loader from hacking

Tool to help guess a files 256 byte XOR key by using frequency analysis