
lisa.py
LLDB MCP Integration + other helpful commands

LLDB MCP Integration + other helpful commands

bespoke tooling for offensive security's Windows Usermode Exploit Dev course (OSED)

Heap analysis tooling for ptmalloc

Educational repository documenting the analysis and exploitation of CVE-2025-5548 (FreeFloat FTP Server buffer overflow). Includes a reusable…

Datalog-based disassembler producing reassemblable assembly from ELF/PE binaries, with GTIRB intermediate representation for binary analysis and…

A libre cross-platform disassembler.

This is a suite of tools/PoCs/exploits for cameras using the iCSee application. And yes - it can run NES games!


Exploit for CVE-2016-2334: heap overflow in 7zip's HFS+ archive parser. Includes HFS+ file generator and WinDbg heap analysis scripts for debugging…

Hybrid kernel combining Mach, FreeBSD, and IOKit for macOS and iOS. Provides core OS services, driver framework, and security policy enforcement on…

IDA PRO auto-renaming plugin with tagging support

Binary code coverage visualizer plugin for Ghidra

Reverse engineer obfuscated JavaScript visually. Chain transforms, inspect AST changes, write reusable deobfuscation plugins.

Collaborative Reverse Engineering plugin for IDA Pro & Hex-Rays

An open-source user mode debugger for Windows. Optimized for reverse engineering and malware analysis.

OGhidra bridges Large Language Models (LLMs) via Ollama with the Ghidra reverse engineering platform, enabling AI-driven binary analysis through…

The first analysis framework for CPU microcode

idenLib - Library Function Identification [This project is not maintained anymore]