
ida-pro-mcp
AI-powered reverse engineering assistant that bridges IDA Pro with language models through MCP.

AI-powered reverse engineering assistant that bridges IDA Pro with language models through MCP.

A collection of software installations scripts for Windows systems that allows you to easily setup and maintain a reverse engineering environment on…

A Hardware Hacking Tool with Web-Based CLI That Speaks Every Protocol

Runtime Mobile Security (RMS) 📱🔥 - is a powerful web interface that helps you to manipulate Android and iOS Apps at Runtime

ret-sync is a set of plugins that helps to synchronize a debugging session (WinDbg/GDB/LLDB/OllyDbg2/x64dbg) with IDA/Ghidra/Binary Ninja…

AntiSpy is a free but powerful anti virus and rootkits toolkit.It offers you the ability with the highest privileges that can detect,analyze and…

A technique that can be used to bypass AV/EDR memory scanners. This can be used to hide well-known and detected shellcodes (such as msfvenom) by…

IDA Pro plugin that implements more user-friendly register and stack views

IDAPython plugin that synchronizes disassembler and decompiler views

Driver Buddy Reloaded is an IDA Pro Python plugin that helps automate some tedious Windows Kernel Drivers reverse engineering tasks

Wireshark for MCP. A transparent proxy that shows every real tool call between your AI client and your MCP servers, live in your terminal.

A pure-Python library that lets you inspect, modify and search the memory of any running process in a few lines of Python :snake: .

A powerful decompiler that lets you reverse-engineer React Native mobile apps by converting their compiled Hermes bytecode (.hbc) files back into…

ShowStopper is a tool for helping malware researchers explore and test anti-debug techniques or verify debugger plugins or other solutions that clash…

Static binary instrumentation tool that dumps COFF object files from executables, enabling code/data insertion at any location for black-box fuzzing…

WinDbg x64 extension that disassembles live functions and uses an LLM to produce verified pseudocode.

An MCP (Model Context Protocol) server that turns all pybag Windows debugger functions into native MCP tools. It lets MCP-compatible clients (Claude…

RISC-V emulator in Rust that boots Linux with JIT on ARM64/x86_64 and Sv39 virtual memory