
GhidrAssist
An LLM extension for Ghidra to enable AI assistance in RE.

An LLM extension for Ghidra to enable AI assistance in RE.

Ghidra extension for PC firmware reverse engineering, providing loaders for PCI option ROMs, Intel Flash Descriptor, coreboot CBFS, and UEFI firmware…

DECAF (short for Dynamic Executable Code Analysis Framework) is a binary analysis platform based on QEMU. This is also the home of the DroidScope…

Unofficial frida extension for VSCode

CERT Kaiju is a binary analysis framework extension for the Ghidra software reverse engineering suite. This repository is a "mirror" -- please file…

Ghidra extension bridging static and dynamic analysis via Frida, enabling scriptable runtime instrumentation for reverse engineering binaries on…

WinDbg x64 extension that disassembles live functions and uses an LLM to produce verified pseudocode.

Denial-of-Service PoC | Writeup | Header with CLFS structures | Imhex pattern for .blf extension

Microsoft HEIF Extension (msheif_store.dll) OOB-read

A Chrome extension that demonstrates bypassing Widevine L3 DRM

The FLARE team's open-source extension to add Python 3 scripting to Ghidra.

The new bridge between Burp Suite and Frida!

A Ghidra plugin for locating object file boundaries.

WinDbg plugin to trace module transitions from a debugged driver.

Reverse-engineered runtime engine for Roblox/Luau with VM hooking, opcode remapping, capability escalation, and UNC script environment for executing…

Root-cause analysis and proof-of-concept for CVE-2026-64705, a macOS HFS xattr kernel heap overflow. Includes weaponized HFS+ image, patcher, parser,…