
fnprint
match functions in binaries by what they do, not what their bytes look like. behavioral function fingerprinting via microexecution.

match functions in binaries by what they do, not what their bytes look like. behavioral function fingerprinting via microexecution.

.NET deobfuscator and unpacker.

x64 Dynamic Reverse Engineering Toolkit

Windows privilege escalation discovery tool that parses Process Monitor boot logs to identify DLL hijacking, weak ACLs, and other elevation paths,…

This experimetal fuzzer is meant to be used for API in-memory fuzzing.

DLLirant is a tool to automatize the DLL Hijacking researches on a specified binary.

Build and query a graph database representation of source code

VMUnprotect.Dumper can dynamically untamper VMProtected Assembly.

Automated DLL Hijacking Discovery, Validation, and Confirmation. Turning local misconfigurations into weaponized, confirmed attack paths.

Code Coverage Exploration Plugin for Ghidra

Frida-based in-process fuzzing suite with AFL++ proxy, standalone active/passive modes, and shared memory communication for high-performance…

Generate a proxy dll for arbitrary dll

Static Binary Instrumentation tool for Windows x64 executables

A tool for effective testing the binding layer of scripting languages

Winstrument is a framework of modular scripts to aid in instrumenting Windows software using Frida for reverse engineering and attack surface…

GNU IFUNC is the real culprit behind CVE-2024-3094