
fnprint
match functions in binaries by what they do, not what their bytes look like. behavioral function fingerprinting via microexecution.

match functions in binaries by what they do, not what their bytes look like. behavioral function fingerprinting via microexecution.

Automated DLL Hijacking Discovery, Validation, and Confirmation. Turning local misconfigurations into weaponized, confirmed attack paths.

An API hooking framework for intercepting and monitoring Windows applications

GNU IFUNC is the real culprit behind CVE-2024-3094

ExportHider: Generating Export Table during Runtime to Hide the Exported Functions from the DLL File.

A proxy for net.tcp-based WCF traffic.

A script to detect stack-strings by using emulation (leveraging Unicorn)

The new bridge between Burp Suite and Frida!

Static Binary Instrumentation tool for Windows x64 executables

Code Coverage Exploration Plugin for Ghidra

Golang bindings for PE-sieve

x64 Dynamic Reverse Engineering Toolkit

DLLirant is a tool to automatize the DLL Hijacking researches on a specified binary.

VMUnprotect.Dumper can dynamically untamper VMProtected Assembly.

A tool for effective testing the binding layer of scripting languages

.NET deobfuscator and unpacker.

Winstrument is a framework of modular scripts to aid in instrumenting Windows software using Frida for reverse engineering and attack surface…