
PyMemoryEditor
A pure-Python library that lets you inspect, modify and search the memory of any running process in a few lines of Python :snake: .

A pure-Python library that lets you inspect, modify and search the memory of any running process in a few lines of Python :snake: .

Object-oriented Python API to simplify interaction with IDA for reverse engineering, enabling plugin development and automation of disassembly…


Cosa Nostra, a FOSS graph based malware clusterization toolkit.


Frida-based dynamic analysis tool that automatically identifies DLL sideloading and COM hijacking vulnerabilities in Windows executables through…

IDA Python plugin for fast, location-driven matching of open-source library symbols in binaries, enabling efficient reverse engineering and…

A toolset for reverse engineering and fuzzing Protobuf-based apps

AndroidDriveSignity is a Python utility designed to bypass driver signature verification in Android kernel(ARMv8.3), facilitating the loading of…

Extract AutoIt scripts embedded in PE binaries

IATelligence is a Python script that will extract the IAT of a PE file and request GPT to get more information about the API and the ATT&CK matrix…

Python Command-Line Ghidra Decompiler

Python utility for parsing Xamarin AssemblyStore blob files

DriverBuddy is an IDA Python script to assist with the reverse engineering of Windows kernel drivers.

A reverse engineering framework written in Python.

Efficient Deobfuscation of Linear Mixed Boolean-Arithmetic Expressions

Proof-of-concept exploit for CVE-2024-55587 in libarchive, demonstrating unsafe extraction via malicious ZIP files.

HardeningMeter is an open-source Python tool carefully designed to comprehensively assess the security hardening of binaries and systems.