
AndroidDriveSignity
Patches Android ARMv8.3 kernel binaries to disable driver signature verification, enabling custom kernel module loading for development and security…

Patches Android ARMv8.3 kernel binaries to disable driver signature verification, enabling custom kernel module loading for development and security…

A script to detect stack-strings by using emulation (leveraging Unicorn)


IATelligence is a Python script that will extract the IAT of a PE file and request GPT to get more information about the API and the ATT&CK matrix…

IDA python script for deobfuscating Astaroth/Guildma injector DLL

Rust Demangler & Normalizer plugin for IDA

Static Decryptor for IcedID Malware

DriverBuddy is an IDA Python script to assist with the reverse engineering of Windows kernel drivers.

Heap analysis tooling for dlmalloc

libtalloc is a python script for use with GDB that can be used to analyse the "trivial allocator" (talloc)

My musings with PowerShell

This repository contains a IDA Python script to recover PrideLocker ESX encryptor strings and a YARA rule

Simplification of General Mixed Boolean-Arithmetic Expressions: GAMBA

Extracts nanocore sample from compile AutoIT script

Find Electron Apps Vulnerable to CVE-2023-4863 / CVE-2023-5129

Script to extract malicious payload and decoy document from CVE-2015-1641 exploit documents


This script can help determine the CPU ID for the processor of your system, please note that I have not added every CPU ID to this script, edit as…