
qiling
A True Instrumentable Binary Emulation Framework

A True Instrumentable Binary Emulation Framework

Modular GDB interface providing a visual dashboard with customizable panels for inspecting registers, source code, assembly, and program state during…

Functional RISC-V ISA simulator supporting multiple extensions (RV32/64, V, cryptography) with interactive debug mode, GDB integration, and…

🔎Sniffing and parsing mysql,redis,http,mongodb etc protocol. 抓包截取项目中的数据库请求并解析成相应的语句。

MCP server bridging Ghidra's reverse engineering with AI tools: 256 tools for decompilation, P-code emulation, live debugging, data flow analysis,…

Plasma is an interactive disassembler for x86/ARM/MIPS. It can generates indented pseudo-code with colored syntax.


Low-level library for encoding and decoding IA32/Intel64 x86 instructions, exposing APIs for instruction length, operands, categories, control-flow…

Hex-Rays Decompiler plugin for better code navigation

:zap: Web Debugging Proxy based on Chrome DevTools Network panel.

Python Exploitation Framework, V8 Engine Debugger, Proxy interceptor, marketplace, post-exploitation, backdoor generator,....

Yet Another Golang binary parser for IDAPro

DEFCON 27 workshop - Modern Debugging with WinDbg Preview

Learning Linux Binary Analysis, published by Packt

A library for intercepting native functions by hooking KiFastSystemCall


Detours implementation (x64/x86) which used only ntdll import

Extract labels from IDA, Ghidra, Binary Ninja, and Relyze files and export x64dbg database. Including radare2 main address.