


Open-source AI reverse-engineering agent using Ghidra and LLMs to reconstruct and validate C/C++ functions from binaries.

x64 binary obfuscator for PE files with control flow flattening, anti-disassembly, import obfuscation, and instruction mutation to hinder reverse…

Library for lifting machine code to LLVM bitcode

Python decompiler for 3.7-3.8 Stripped down from uncompyle6 so we can refactor and start to fix up some long-standing problems

A proof-of-concept Cobalt Strike Reflective Loader which aims to recreate, integrate, and enhance Cobalt Strike's evasion features!

A tool to recover a fully analyzable .ELF from a raw kernel, through extracting the kernel symbol table (kallsyms)

ret-sync is a set of plugins that helps to synchronize a debugging session (WinDbg/GDB/LLDB/OllyDbg2/x64dbg) with IDA/Ghidra/Binary Ninja…

APKinspector is a powerful GUI tool for analysts to analyze the Android applications.

Utility to find AES keys in running processes

[Official] Android reverse engineering tool focused on dynamic instrumentation automation leveraging Frida. It disassembles dex, analyzes it…

A PowerShell Module Dedicated to Reverse Engineering

Toolkit to emulate firmware and analyse it for security vulnerabilities

A collection of my Semgrep rules to facilitate vulnerability research.

A curated list of public TEE resources for learning how to reverse-engineer and achieve trusted code execution on ARM devices

A memory-based evasion technique which makes shellcode invisible from process start to end.

MARA is a Mobile Application Reverse engineering and Analysis Framework. It is a toolkit that puts together commonly used mobile application reverse…
