
mora-hwbp
Hardware Breakpoint (DR0-DR7) based patch-less user-mode hooking & telemetry instrumentation engine (AMSI, WLDP & ETW PoC).

Hardware Breakpoint (DR0-DR7) based patch-less user-mode hooking & telemetry instrumentation engine (AMSI, WLDP & ETW PoC).

MCP-powered reverse engineering platform connecting WinDbg, IDA Pro & x64dbg with 160+ AI-accessible debugging and analysis tools.

Time Travel Debugging IDA plugin

Helper script for Windows kernel debugging with IDA Pro on native Bochs debugger (including PDB symbols)

The first analysis framework for CPU microcode

A DTrace on Windows Reimplementation

VSCode extension for Frida-based mobile reverse engineering: runtime class/module inspection, Java/ObjC/native hook generation, autocomplete, and…

Vivisect plugin enabling function emulation, function recon, and interactive Python CLI for emulation-driven reverse engineering and vulnerability…

YARI is an interactive debugger for YARA Language.

truffleproc — hunt secrets in process memory (TruffleHog & gdb mashup)

Sample extensions, scripts, and API uses for WinDbg.

Fermion, an electron wrapper for Frida & Monaco.


A curated list of IDA x64DBG, Ghidra and OllyDBG plugins.

Toy scripts for playing with WinDbg JS API

Detours implementation (x64/x86) which used only ntdll import

Lightweight fuzzing of a memory snapshot using KVM

Vibe Reverse Engineer with IDA SQL: An interface for IDA in SQL via live virtual tables