
decomp2dbg
A plugin to introduce interactive symbols into your debugger from your decompiler

A plugin to introduce interactive symbols into your debugger from your decompiler

C++ shellcode injection technique using XOR encryption and UUID string conversion to bypass Windows Defender, with function call obfuscation and…

Reproducer and technical analysis for CVE-2026-85048, a Chrome viz surface use-after-free in the GPU process, with ASAN unit tests and browser…

Technical analysis and proof-of-concept for CVE-2022-32932, a double fetch vulnerability in Apple's ANE kernel driver leading to out-of-bounds write…

A verified map of reverse engineering and malware analysis. Disassemblers, unpacking, exploit dev, fuzzing, DFIR, and the deep-cut writeups other…

An open-source user mode debugger for Windows. Optimized for reverse engineering and malware analysis.

Multi-architecture disassembly framework providing a lightweight, thread-safe API for binary analysis, reverse engineering, and malware research…

Local PE injection technique using hardware breakpoints and vectored exception handling to manipulate DLL loading and execute arbitrary payloads, as…

( 0day ) Local Privilege Escalation in IObit Malware Fighter

Comprehensive 100% Unrestricted Technical Analysis of JAGUAR_TOOTH Malware (APT28). High-precision reconstruction of Cisco IOS SNMP exploitation, ROP…

(0 day) CVE-2026-37333 LPE I found in IObit Malware Fighter v. 13.2.0.

Malware Analysis CVE-2017-11882

Program for determining types of files for Windows, Linux and MacOS.

An Interactive Binary Patching Plugin for IDA Pro

InjectProc - Process Injection Techniques [This project is not maintained anymore]

Dynamically convert an unmanaged EXE or DLL file to PIC shellcode by prepending a shellcode stub.

Linux post-exploitation framework with a UEFI bootkit that persistently and stealthily loads a Rust-based kernel module rootkit on modern Linux…
