
pesieve-go
Golang bindings for PE-sieve

Golang bindings for PE-sieve

Local risk assessment script for CVE-2026-42945 (nginx-rift). Checks version, vulnerable rewrite+set config, ASLR status, and compile hardening to…

.NET deobfuscator and unpacker.

An LLVM-based instrumentation tool for universal taint tracking, dataflow analysis, and tracing.

Unpack and deobfuscate VMProtect 2 protected binaries with an emulation-based VM explorer, handler profiler, and experimental LLVM recompiler for…

Static Binary Instrumentation tool for Windows x64 executables

Runtime libc function auditor that detects file access race conditions and symlink vulnerabilities by hooking filesystem syscalls via LD_PRELOAD,…

iblessing is an iOS security exploiting toolkit, it mainly includes application information gathering, static analysis and dynamic analysis. It can…

Anvil is a runtime-first attack surface assessment tool for Windows thick client applications, built for penetration testers and security researchers…

Proof-of-concept validation harness for Electron boundary hardening, modeling renderer/main-process isolation, IPC policy enforcement, and navigation…

CVE-2022-38532 - Local Privilege Escalation vulnerability in MSI Center Application

ADT is a toolset designed to help model application behavior, research and test security vulnerabilities, and facilitate reversing hostile code.

Firmware Analysis and Comparison Tool

Security profiling for blackbox iOS

Fermion, an electron wrapper for Frida & Monaco.

Detect, analyze and uniquely identify crashes in Windows applications

A tool to be used in post exploitation phase for blue and red teams to bypass APPLICATIONCONTROL policies

Mutates signed Windows binaries to retain valid catalog signatures while changing file hashes, bypassing hash-based endpoint blocks and exposing…