
fernflower
Decompiler from Java bytecode to Java, used in IntelliJ IDEA.

Decompiler from Java bytecode to Java, used in IntelliJ IDEA.

A decompiler-agnostic plugin for interacting with AI in your decompiler. GPT-4, Claude, and local models supported!

A tool that is used to hunt vulnerabilities in x64 WDM drivers

Intel Pin-based tracer for API calls, syscalls, and instructions with anti-debug evasion, used for malware analysis and reverse engineering of packed…

Userland exec PoC to be used as attack vector technique

Polymorphic encryptor that transforms shellcode, PE, and COFF files into obfuscated, position-independent payloads with RC4 and random block cipher…

Easy Grade Pro 4.1 file parsing bug used as an educational example to show how beginners can start vulnerability research through reverse engineering.

A lightweight dynamic instrumentation library

Frida-based .NET Framework injector and managed method hooking toolkit for runtime tracing, native entrypoint resolution, and dynamic analysis of…

A utility for playing with cryptography, geared towards ransomware analysis.

Scriptable binary emulation framework integrating IDA Pro/Radare2 with Unicorn engine for automated malware analysis, string decryption, and code…

IDA Pro plugin for query based searching within the binary useful mainly for vulnerability research.

This is a little plugin to copy disassembly in a way that is usable in YARA rules!

Tool that can be used to trim useless things from a PE file such as the things a file pumper would add.

Materials for Windows Malware Analysis training (volume 1)

Injects code into ELF executables post-build