
dd
JIT-based userspace Linux kernel that runs containers natively on Apple Silicon macOS without a VM. Drop-in Docker Engine API replacement with…

JIT-based userspace Linux kernel that runs containers natively on Apple Silicon macOS without a VM. Drop-in Docker Engine API replacement with…

Automated steganography detection tool that scans websites, web servers, and local directories using AI-driven object/text recognition and deep file…

Binary template repository for 010 Editor, providing .bt scripts for parsing executables, filesystem images, registry hives, and forensic artifacts…

Pure Python assembler toolkit for creating shellcode, dynamically patching binaries, and instrumenting firmware images for debugging and fuzzing on…

Reproduction and exploitation of CVE-2023-4863, a heap-buffer-overflow in libwebp's Huffman table builder, with crafted WebP images and ASAN-verified…

Detect images that likely exploit CVE-2022-44268

Docker images of Xpdf 4.04, vulnerable to CVE-2022-30524

Lightweight native Windows memory scanner for AV/EDR platforms, detecting suspicious mapped images and manual DLL injection techniques by IAT thunk

C-based library for parsing, editing, and saving EXIF metadata from JPEG images, with a focus on exploiting CVE-2016-6328 for Android 10.

Static analysis and structure recovery toolkit for ACE .qvm0-protected PE images

Firmware security research platform combining binary analysis, taint tracing, and emulation across IoT, edge AI, mobile devices, and robotics.

IoT firmware identification and extraction

Toolkit for decoding, inspecting, and modifying UEFI firmware volumes and variable stores. Supports secure boot certificate enrollment, PE binary…

Hash collisions and their exploitations

Proof-of-concept exploit for CVE-2023-1999 targeting the WebP codec library on Android 10 (r33). Demonstrates a heap buffer overflow vulnerability in…

A tool for UEFI firmware reverse engineering