
ASM-Obfuscator
Obfuscates x86-64 assembly with instruction injection, junk code, constant obfuscation, and runtime decryption to hinder reverse engineering and…

Obfuscates x86-64 assembly with instruction injection, junk code, constant obfuscation, and runtime decryption to hinder reverse engineering and…

Reverse engineering analysis of Dropper GCleaner, a malware that uses a resilient C2 infrastructure, kernel driver loading, PowerShell/Conhost…

match functions in binaries by what they do, not what their bytes look like. behavioral function fingerprinting via microexecution.

In-memory Mach-O dylib loader for stock macOS Python; decrypts, maps, and runs payloads without dlopen or writing to disk, with optional encrypted…

跨平台密码学工具箱。包含编解码,编码转换,加解密, 哈希,MAC,签名,大数运算,压缩,二维码功能,CTF等功能。

An open-source user mode debugger for Windows. Optimized for reverse engineering and malware analysis.

An extensible, deterministic static‑analysis engine that extracts high‑signal IOCs from PE binaries and text, built for SOC automation and modern…

The Cyber Swiss Army Knife - a web app for encryption, encoding, compression and data analysis

Static binary vulnerability scanner using abstract interpretation on Ghidra Pcode. Detects CWE classes like buffer overflows, use-after-free, and…

Ghidra is a software reverse engineering (SRE) framework

Command-line and GUI tool for decompiling Android Dex and APK files into readable Java source code, with resource decoding, deobfuscation, and Smali…

A tool for reverse engineering Android apk files

Main repo for hosting release binaries

A FREE comprehensive reverse engineering tutorial covering x86, x64, 32-bit/64-bit ARM, 8-bit AVR and 32-bit RISC-V architectures.

Run iOS apps without actually installing them!

Unofficial revival of the well known .NET debugger and assembly editor, dnSpy

Living Off The Land Binaries And Scripts - (LOLBins and LOLScripts)

autonomous red teaming platform; multi-agent offensive-security meta-harness