
systeminformer
Real-time Windows system monitor with advanced process, network, and disk analysis, stack trace debugging, malware detection, and service management.…

Real-time Windows system monitor with advanced process, network, and disk analysis, stack trace debugging, malware detection, and service management.…

Linux syscall tracer using ptrace to monitor, debug, and analyze system calls, signal deliveries, and process state changes for diagnostics and…

A pure-Python library that lets you inspect, modify and search the memory of any running process in a few lines of Python :snake: .

Reverse engineering software using a full system simulator

ltm is a machine-history debugger for Linux. It records process, file, network, memory, and block-I/O metadata via eBPF, then lets you query the…

An API hooking framework for intercepting and monitoring Windows applications

All reasonably stable tools

Dump cookies and credentials directly from Chrome/Edge process memory

A lightweight dynamic instrumentation library

Runtime process analysis and memory hacking MCP server for AI agents. Supports dynamic extension loading, read-only mode, audit logging, and…

All-in-one macOS binary analysis: Mach-O parsing, ARM64 disassembly, code signatures, and debugging.

PoCs and tools for investigation of Windows process execution techniques

ComfyEngine is a memory exploration toolkit built for people who need to monitor, patch, and script a running process.

Hex-Rays Decompiler plugin for better code navigation

Easywork Enterprise 2.1.3.354 is vulnerable to Cleartext Storage of Sensitive Information in Memory. The application leaves valid device-bound…

A desktop tool that allows injecting DLLs, hooking WinAPI functions like CreateFileW, and modifying process behavior at runtime — designed for…

truffleproc — hunt secrets in process memory (TruffleHog & gdb mashup)