
recurse
Agentic reverse engineering IDE with a pure-Rust multi-architecture disassembler, native decompiler, debugger, and LLM agent for binary analysis and…

Agentic reverse engineering IDE with a pure-Rust multi-architecture disassembler, native decompiler, debugger, and LLM agent for binary analysis and…

An open-source user mode debugger for Windows. Optimized for reverse engineering and malware analysis.

AI-Powered Reverse Engineering Plugin for IDA Pro

Some setup scripts for security research tools.

Drltrace is a library calls tracer for Windows and Linux applications.

Wireshark for MCP. A transparent proxy that shows every real tool call between your AI client and your MCP servers, live in your terminal.

All reasonably stable tools

UNIX-like reverse engineering framework and command-line toolset

IDA 2016 plugin contest winner! Symbolic Execution just one-click away!

Hardware Breakpoint (DR0-DR7) based patch-less user-mode hooking & telemetry instrumentation engine (AMSI, WLDP & ETW PoC).

A MCP Debugger Server for Windows executables (x86 and x64). Exposes debugger functionality as MCP Tools for static / dynamic analysis of the…

Dynamic branch-divergence finder for native code -- traces two Frida executions and finds the exact instruction where they diverge.

Sample extensions, scripts, and API uses for WinDbg.

Obfuscates x86-64 assembly with instruction injection, junk code, constant obfuscation, and runtime decryption to hinder reverse engineering and…

Incident Response & Digital Forensics Debugging Extension

This is an experimental project for [resmack](https://gitlab.com/d0c-s4vage/resmack) to figure out the best methods for instrumenting target…

Go-based MITM HTTP/HTTPS proxy with HTTP/2 and HTTP/1.1 interception, local CA/per-host cert generation, CONNECT/WebSocket tunneling, disk caching,…

Debugger utilizing stealth hooks to hide from debugger detection