
ROPgadget
Search for ROP gadgets in ELF, PE, Mach-O, and Raw binaries across x86, ARM, MIPS, and RISC-V architectures. Supports automated ROP chain generation…

Search for ROP gadgets in ELF, PE, Mach-O, and Raw binaries across x86, ARM, MIPS, and RISC-V architectures. Supports automated ROP chain generation…

Automated static analysis tools for binary programs

Scans a given process. Recognizes and dumps a variety of potentially malicious implants (replaced/injected PEs, shellcodes, hooks, in-memory patches).

Static analyzer for PE executables with plugin-based detection of packers, compilers, suspicious imports, cryptographic constants, and ClamAV…

Identifies the bytes that Microsoft Defender flags on.


Intel Pin-based tracer for API calls, syscalls, and instructions with anti-debug evasion, used for malware analysis and reverse engineering of packed…

All reasonably stable tools

A reversing plugin for cross-decompiler collaboration, built on git.

Sickle - Payload Development Kit

Deobfuscation via optimization with usage of LLVM IR and parsing assembly.

Perform ECDSA and DSA nonce reuse private key recovery attacks to analyze signature vulnerabilities and recover private keys from blockchain…

Obfuscate specific windows apis with different apis

Security profiling for blackbox iOS

Curated list of awesome projects and resources related to Rust and computer security

:cherry_blossom: Interactive shellcoding environment to easily craft shellcodes

Simulates the Windows PE loader to identify DLL hijacking vulnerabilities, generates weaponized DLLs with shellcode payloads, and detects UAC…

PE-bear (builds only)