
capa
Rule-based static and dynamic analysis tool that identifies capabilities in PE, ELF, .NET, and shellcode files, mapping them to MITRE ATT&CK…

Rule-based static and dynamic analysis tool that identifies capabilities in PE, ELF, .NET, and shellcode files, mapping them to MITRE ATT&CK…


MCP Server for Ghidra

Runtime instrumentation framework for building dynamic analysis tools: tracing, profiling, code coverage, memory debugging, fuzzing, and disassembly…

IDA plugin which queries language models to speed up reverse-engineering

SASM - simple crossplatform IDE for NASM, MASM, GAS and FASM assembly languages

A lightweight dynamic instrumentation library

Python toolkit for analyzing MS OLE2 and Office documents, extracting VBA macros, detecting exploits, and performing forensic analysis of structured…

An easy-to-learn/use static analysis framework for Java and Android

APKinspector is a powerful GUI tool for analysts to analyze the Android applications.

Low-level library for encoding and decoding IA32/Intel64 x86 instructions, exposing APIs for instruction length, operands, categories, control-flow…

A security focused static analysis tool for Android and Java applications.

Collection of Offensive C# Tooling

More than a ReClass port to the .NET platform.

SigFlip is a tool for patching authenticode signed PE files (exe, dll, sys ..etc) without invalidating or breaking the existing signature.

Android security insights in full spectrum.

A collection of my Semgrep rules to facilitate vulnerability research.

Static taint analysis platform for Android apps that detects vulnerabilities and compliance issues using customizable rule-based scanning and…