
rtf_exploit_extractor
Script to extract malicious payload and decoy document from CVE-2015-1641 exploit documents

Script to extract malicious payload and decoy document from CVE-2015-1641 exploit documents

A script to detect stack-strings by using emulation (leveraging Unicorn)

DriverBuddy is an IDA Python script to assist with the reverse engineering of Windows kernel drivers.

An open source script to perform malware static analysis on Portable Executable

PoC Frida script to view Android libbinder traffic

A radare2 script to parse the gopclntab to facilitate Reverse Engineering Go binaries.

This repository contains a IDA Python script to recover PrideLocker ESX encryptor strings and a YARA rule

My musings with PowerShell

Static Decryptor for IcedID Malware

This script can help determine the CPU ID for the processor of your system, please note that I have not added every CPU ID to this script, edit as…

Simplification of General Mixed Boolean-Arithmetic Expressions: GAMBA


ComfyEngine is a memory exploration toolkit built for people who need to monitor, patch, and script a running process.

Find Electron Apps Vulnerable to CVE-2023-4863 / CVE-2023-5129

IDA Pro utilities from FLARE team

A tool for UEFI firmware reverse engineering

IDA python script for deobfuscating Astaroth/Guildma injector DLL