
ctxdebug
MCP-powered reverse engineering platform connecting WinDbg, IDA Pro & x64dbg with 160+ AI-accessible debugging and analysis tools.

MCP-powered reverse engineering platform connecting WinDbg, IDA Pro & x64dbg with 160+ AI-accessible debugging and analysis tools.

Study of a classic stack-based buffer overflow vulnerability in a controlled lab environment for educational purposes.

PoCs and tools for investigation of Windows process execution techniques

truffleproc — hunt secrets in process memory (TruffleHog & gdb mashup)

Example demonstrating a Go-based trusted execution environment on ARM TrustZone and RISC-V, running concurrent unikernels as Trusted OS, Trusted…

Toy scripts for playing with WinDbg JS API

A technique that can be used to bypass AV/EDR memory scanners. This can be used to hide well-known and detected shellcodes (such as msfvenom) by…

Dump cookies and credentials directly from Chrome/Edge process memory

asadbg is a framework of tools to aid in automating live debugging of Cisco ASA devices

Main repository to pull all NCC Group Cisco ASA-related tool projects.

Heap analysis tooling for dlmalloc

Heap analysis tooling for ptmalloc

Heap analysis tooling for mempool

libtalloc is a python script for use with GDB that can be used to analyse the "trivial allocator" (talloc)

Some of my publicly available Malware analysis and Reverse engineering.

My musings with PowerShell

Easywork Enterprise 2.1.3.354 is vulnerable to Cleartext Storage of Sensitive Information in Memory. The application leaves valid device-bound…