
Dwarf
Full featured multi arch/os debugger built on top of PyQt5 and frida

Full featured multi arch/os debugger built on top of PyQt5 and frida

Create fake certs for binaries using windows binaries and the power of bat files

Blackbox Protobuf is a set of tools for working with encoded Protocol Buffers (protobuf) without the matching protobuf definition.

Assortment of hashing algorithms used in malware

Tool that allows comparing symbol, type and syscall information of Microsoft Windows binaries across different versions of the OS, using a Web UI…

Build and query a graph database representation of source code

Simplification of General Mixed Boolean-Arithmetic Expressions: GAMBA

Collection of scripts for malware analysis, deobfuscation, and configuration extraction. Supports static analysis, unpacking, shellcode conversion,…

FileInsight-plugins: decoding toolbox of McAfee FileInsight hex editor for malware analysis

asadbg is a framework of tools to aid in automating live debugging of Cisco ASA devices

Automates repair of malformed UPX headers in ELF binaries, restoring magic, filesize, blocksize, and overlay fields so standard unpackers can process…

Proof of Concept CVE-2025-21420 (Windows Disk Cleanup Tool EoP)

Winstrument is a framework of modular scripts to aid in instrumenting Windows software using Frida for reverse engineering and attack surface…

unleash the full power of your soundcores! :)

WslinkVMAnalyzer is a tool to facilitate analysis of code protected by a virtual machine featured in Wslink malware

Cryptanalysis of a proprietary 1999 video DRM system. Recovers 61 encrypted wrestling videos from the WCW Internet Powerdisk CD-ROM through static…

Intel Management Engine JTAG Proof of Concept - 2022 Instructions

PoC and analysis of a local stack-buffer-overflow in dataSIMS Avionics ARINC 664-1 v4.5.3, with payload breakdown, reproduction script, and CVE…