
mora-hwbp
Hardware Breakpoint (DR0-DR7) based patch-less user-mode hooking & telemetry instrumentation engine (AMSI, WLDP & ETW PoC).

Hardware Breakpoint (DR0-DR7) based patch-less user-mode hooking & telemetry instrumentation engine (AMSI, WLDP & ETW PoC).

N-gram-based type recovery tool for binaries, recovering structures and function signatures from decompiled code with high throughput and actionable…

Unicorn CPU emulator framework (ARM, AArch64, M68K, Mips, Sparc, PowerPC, RiscV, S390x, TriCore, X86)

Open-source, cross platform Qt6 based IDE for reverse-engineering Android application packages. It features a friendly IDE-like layout including code…

Python scriptable Reverse Engineering Sandbox, a Virtual Machine instrumentation and inspection framework based on QEMU

Python Command-Line Ghidra MCP

bespoke tooling for offensive security's Windows Usermode Exploit Dev course (OSED)

Cmulator is ( x86 - x64 ) Scriptable Reverse Engineering Sandbox Emulator for shellcode and PE binaries . Based on Unicorn & Zydis Engine &…

:zap: Web Debugging Proxy based on Chrome DevTools Network panel.

GoTEE - example application

Study of a classic stack-based buffer overflow vulnerability in a controlled lab environment for educational purposes.

Browser-based frontend to gdb (gnu debugger). Add breakpoints, view the stack, visualize data structures, and more in C, C++, Go, Rust, and Fortran.…

Exploitation Training -- CVE-2013-2028: Nginx Stack Based Buffer Overflow

Tiny cute emulator plugin for IDA based on unicorn.

Command-line and Python debugger for instrumenting and modifying native software behavior on Windows and Linux.

A radare2 script to parse the gopclntab to facilitate Reverse Engineering Go binaries.

A happy heap editor to support your exploitation process :slightly_smiling_face:

Dump cookies and credentials directly from Chrome/Edge process memory