
fnprint
match functions in binaries by what they do, not what their bytes look like. behavioral function fingerprinting via microexecution.

match functions in binaries by what they do, not what their bytes look like. behavioral function fingerprinting via microexecution.

Firmware Analysis and Comparison Tool

Modular software verification toolchain that translates LLVM IR into Boogie intermediate verification language for bounded and experimental unbounded…

WebKit NavigateEvent.canIntercept SOP bypass via cross-port interception — iOS 26.3.1 BSI (CVE-2026-20643)

Automated DLL Hijacking Discovery, Validation, and Confirmation. Turning local misconfigurations into weaponized, confirmed attack paths.

Maps execution-coverage data onto Ghidra disassembly to highlight visited code paths and accelerate reverse-engineering workflows.

CVE-2026-42945: nginx-rift vulnerability analysis and detection script

GNU IFUNC is the real culprit behind CVE-2024-3094

ExportHider: Generating Export Table during Runtime to Hide the Exported Functions from the DLL File.

Anvil is a runtime-first attack surface assessment tool for Windows thick client applications, built for penetration testers and security researchers…

Xyntia, the black-box deobfuscator

A script to detect stack-strings by using emulation (leveraging Unicorn)

Static Binary Instrumentation tool for Windows x64 executables

Detect, analyze and uniquely identify crashes in Windows applications

Pishi is a code coverage tool like kcov for macOS.

Fermion, an electron wrapper for Frida & Monaco.

Code Coverage Exploration Plugin for Ghidra

ADT is a toolset designed to help model application behavior, research and test security vulnerabilities, and facilitate reversing hostile code.