
ioctlance
A tool that is used to hunt vulnerabilities in x64 WDM drivers

A tool that is used to hunt vulnerabilities in x64 WDM drivers

A tool to be used in post exploitation phase for blue and red teams to bypass APPLICATIONCONTROL policies

An LLVM-based instrumentation tool for universal taint tracking, dataflow analysis, and tracing.

Binder Trace is a tool for intercepting and parsing Android Binder messages. Think of it as "Wireshark for Binder".


A fuzzing tool for closed-source binaries based on Unicorn and LibFuzzer

memory search and patch tool on debuggable apk without root & ndk


A malware analysis and classification tool.

ELEGANTBOUNCER is a detection tool for file-based mobile exploits.

ATrace is a tool for tracing execution of binaries on Windows.

A blazingly fast, multi-threaded TUI malware analysis tool built in Rust. Features deep PE parsing, YARA scanning, and heuristic risk scoring.

DLLirant is a tool to automatize the DLL Hijacking researches on a specified binary.

Main repository to pull all NCC Group Cisco ASA-related tool projects.

Automated differential fuzzing tool for cryptographic software that detects implementation errors, compliance failures, and side-channel leaks…

Static-first research tool for unpacking Nuitka-compiled binaries: extracts constants, modules, recovers .pyc files, and generates analysis reports.

Windows RPC interface discovery and analysis tool with visual endpoint enumeration, PE parsing, symbol resolution, real-time ETW sniffing, and…

Frida.re based RunPE (and MapViewOfSection) extraction tool