
windiff
Tool that allows comparing symbol, type and syscall information of Microsoft Windows binaries across different versions of the OS, using a Web UI…

Tool that allows comparing symbol, type and syscall information of Microsoft Windows binaries across different versions of the OS, using a Web UI…

A zero-symbol static analysis engine that extracts and mathematically ranks the Windows RPC attack surface using an AHP-based risk model.

Reference IDAPython and Hex-Rays snippets for Windows internals, PEB/TEB structures, low-level binary analysis, and AI-assisted reverse engineering.

Use IDA PRO HexRays decompiler with OpenAI(ChatGPT) to find possible vulnerabilities in binaries

Windows RPC interface discovery and analysis tool with visual endpoint enumeration, PE parsing, symbol resolution, real-time ETW sniffing, and…

Find Electron Apps Vulnerable to CVE-2023-4863 / CVE-2023-5129

GDB-based Python script for analyzing dlmalloc heap structures, providing chunk inspection, mstate enumeration, and offline snapshot analysis for…

Collection of PowerShell utilities for Windows API interaction, process/token enumeration, debug detection, memory dumping, and post-exploitation…

Automated scanner for discovering DLL search order hijacking candidates in Windows executables, featuring import table parsing, runtime module…

Windows kernel-mode driver reconnaissance tool that identifies low-privilege accessible drivers, resolves DispatchDeviceControl routines, and maps…