
MARA_Framework
MARA is a Mobile Application Reverse engineering and Analysis Framework. It is a toolkit that puts together commonly used mobile application reverse…

MARA is a Mobile Application Reverse engineering and Analysis Framework. It is a toolkit that puts together commonly used mobile application reverse…

Open source memory scanner written in C++

A lightweight dynamic instrumentation library

IDA Pro plugin for query based searching within the binary useful mainly for vulnerability research.

This repository contains an IDA processor for loading and disassembling compiled yara rules.

A disassembler & experimental decompiler for TLOU2 DC Scripts.

iblessing is an iOS security exploiting toolkit, it mainly includes application information gathering, static analysis and dynamic analysis. It can…

SigFlip is a tool for patching authenticode signed PE files (exe, dll, sys ..etc) without invalidating or breaking the existing signature.

A tool to be used in post exploitation phase for blue and red teams to bypass APPLICATIONCONTROL policies

Detects process injection and memory manipulation used by malware. Finds RWX regions, shellcode patterns, API hooks, thread hijacking, and process…

This is a little plugin to copy disassembly in a way that is usable in YARA rules!

Tool that can be used to trim useless things from a PE file such as the things a file pumper would add.

Polymorphic encryptor that transforms shellcode, PE, and COFF files into obfuscated, position-independent payloads with RC4 and random block cipher…