
Brovan
User-mode x86_64 binary emulator for malware analysis and reverse engineering. Supports PE, ELF, memory dumps, and raw binaries with syscall tracing,…

User-mode x86_64 binary emulator for malware analysis and reverse engineering. Supports PE, ELF, memory dumps, and raw binaries with syscall tracing,…

Program for determining types of files for Windows, Linux and MacOS.

🔍 A Hex Editor for Reverse Engineers, Programmers and people who value their retinas when working at 3 AM.

.NET Decompiler with support for PDB generation, ReadyToRun, Metadata (&more) - cross-platform!

High-performance SMT solver for automated theorem proving, constraint solving, and program verification. Supports multiple theories and language…


Tool that allows comparing symbol, type and syscall information of Microsoft Windows binaries across different versions of the OS, using a Web UI…

Hex Viewer/Editor/Analyzer compatible with Linux/Windows/MacOS

MCP server for reverse engineering Windows executables and binary formats. Combines static triage, Ghidra-assisted function recovery, plugin-driven…

An open-source user mode debugger for Windows. Optimized for reverse engineering and malware analysis.

XMachOViewer is a Mach-O viewer for Windows, Linux and MacOS

PE file viewer/editor for Windows, Linux and MacOS.

Free and Open Source Reverse Engineering Platform powered by rizin

Runtime instrumentation framework for building dynamic analysis tools: tracing, profiling, code coverage, memory debugging, fuzzing, and disassembly…

pefile is a Python module to read and work with PE (Portable Executable) files

Walk any memory dump. Find what's hidden. Linux + Windows kernel forensics from a single static Rust binary — no Python required.

Collection of forensic tools

Command-line and GUI tool for decompiling Android Dex and APK files into readable Java source code, with resource decoding, deobfuscation, and Smali…