
Lucky-Spark
A stealthy stager designed for shellcode payloads staged with http/https like Sliver, or on github raw.

A stealthy stager designed for shellcode payloads staged with http/https like Sliver, or on github raw.

Automated DLL hijacking vulnerability discovery tool that analyzes PE binaries at load-time and runtime via API hooking, enumerating missing DLLs and…

Reverse engineering toolkit for PerimeterX's bytecode VM, featuring a CFG-based disassembler, 5-layer decryption pipeline, opcode table…

takes shellcode bad-bytes and banishes them, returning cleaned shellcode with preserved functionalities

Application Hijack Scanner for macOS

Static and dynamic analysis tool for detecting malicious code, suspicious binaries, and privacy violations

iOS Malicious Bit Hunter is a malicious plug-in detection engine for iOS applications. It can analyze the head of the macho file of the injected…

Semantic analysis engine for detecting vulnerability fixes in Windows kernel driver patches — 58 YAML rules, Ghidra decompilation, reachability…

Xyntia, the black-box deobfuscator

Analysis of the vulnerability

A C# PE loader for x64 and x86 PE files.

Discover DYLD_INSERT_LIBRARIES hijacks on macOS

WebKit NavigateEvent.canIntercept SOP bypass via cross-port interception — iOS 26.3.1 BSI (CVE-2026-20643)

Anvil is a runtime-first attack surface assessment tool for Windows thick client applications, built for penetration testers and security researchers…


The great RSA Attacking Toolkit compiled for Windows

Python bindings for BochsCPU