
autofs-cve-2026-84568
Reverse engineering notes and working PoC for CVE-2026-84568, a macOS automountd trust-boundary violation allowing mounts from localhost or the…

Reverse engineering notes and working PoC for CVE-2026-84568, a macOS automountd trust-boundary violation allowing mounts from localhost or the…

A libre cross-platform disassembler.

LLVM-based security research toolchain: NeverC, a C23 cross-compiler, and NeverD, a binary analysis and decompilation engine that lifts PE, ELF,…

Fuzzing Embedded Systems using Hardware Breakpoints

Python module for viewing Portable Executable (PE) files in a tree-view using pefile and PyQt5. Can also be used with IDA Pro and Rekall to dump…

Android Security Suite for in-depth reconnaissance and static bytecode analysis based on Ghera benchmarks.

Reverse engineering research of ASRock AsrDrv103.sys (CVE-2020-15368), covering its driver interface, encrypted request protocol, and privileged…

Technical report and authenticated reverse-shell PoC for CVE-2026-96515, a root command execution flaw in the Netlink HG323RW router's BOA diagnostic…

🐈⬛ WIP Suite for reverse engineering JVM applications

Core binary-lifting library that translates executable code to LLVM IR and reconstructs C-like source for reverse engineering and automated binary…

The FLARE team's open-source extension to add Python 3 scripting to Ghidra.

Nasha is a Virtual Machine for .NET files and its runtime was made in C++/CLI

Reverse engineering notes and a self-contained PoC for the macOS NFS client access-cache race (CVE-2026-43687), with kext disassembly diff and dtrace…

TrueType and OpenType font fuzzing toolset

An Open-Source Pre and Post Callback-Based Framework for macOS Kernel Monitoring.

Workshop materials for mastering WinDbg debugging in kernel and user mode, with KdNet setup, demos, and a Time Travel Debugging challenge for binary…

Static analysis tool for Android APKs that inspects Dalvik bytecode, decodes XML resources, and detects potential issues. Supports binary…