
ptrace
Linux ptrace-based process tracing and debugging utility for inspecting system calls, memory, and program execution flow.

Linux ptrace-based process tracing and debugging utility for inspecting system calls, memory, and program execution flow.

Elevates a low-privilege Windows process to SYSTEM via a gdb-assisted ROP token-swap chain, demonstrating CVE-2026-62737 in a lab-only QEMU…

PoCs and tools for investigation of Windows process execution techniques

truffleproc — hunt secrets in process memory (TruffleHog & gdb mashup)

Dump cookies and credentials directly from Chrome/Edge process memory

Easywork Enterprise 2.1.3.354 is vulnerable to Cleartext Storage of Sensitive Information in Memory. The application leaves valid device-bound…

A lightweight dynamic instrumentation library

CVE-2025-65320 proof-of-concept demonstrating cleartext license key extraction from process memory via debugger attachment, enabling software…

🔎Sniffing and parsing mysql,redis,http,mongodb etc protocol. 抓包截取项目中的数据库请求并解析成相应的语句。

An API hooking framework for intercepting and monitoring Windows applications

A pure-Python library that lets you inspect, modify and search the memory of any running process in a few lines of Python :snake: .

ComfyEngine is a memory exploration toolkit built for people who need to monitor, patch, and script a running process.

A desktop tool that allows injecting DLLs, hooking WinAPI functions like CreateFileW, and modifying process behavior at runtime — designed for…

Cisco RV110w UPnP stack overflow

All-in-one macOS binary analysis: Mach-O parsing, ARM64 disassembly, code signatures, and debugging.

Runtime process analysis and memory hacking MCP server for AI agents. Supports dynamic extension loading, read-only mode, audit logging, and…

Drltrace is a library calls tracer for Windows and Linux applications.

Hex-Rays Decompiler plugin for better code navigation