
dll-injector
A desktop tool that allows injecting DLLs, hooking WinAPI functions like CreateFileW, and modifying process behavior at runtime — designed for…

A desktop tool that allows injecting DLLs, hooking WinAPI functions like CreateFileW, and modifying process behavior at runtime — designed for…

Virtual Machine Introspection, Tracing & Debugging

Tool to make in memory man in the middle

Drltrace is a library calls tracer for Windows and Linux applications.

Elevates a low-privilege Windows process to SYSTEM via a gdb-assisted ROP token-swap chain, demonstrating CVE-2026-62737 in a lab-only QEMU…

A pure-Python library that lets you inspect, modify and search the memory of any running process in a few lines of Python :snake: .

An API hooking framework for intercepting and monitoring Windows applications

Real-time Windows system monitor with advanced process, network, and disk analysis, stack trace debugging, malware detection, and service management.…

a PE Loader and Windows API tracer. Useful in malware analysis.

PoCs and tools for investigation of Windows process execution techniques

A lightweight dynamic instrumentation library

Scriptable debugger for Android Dalvik VM using JDWP/DDM interfaces to hook methods, inspect process state, and modify runtime behavior without…

A happy heap editor to support your exploitation process :slightly_smiling_face:

ComfyEngine is a memory exploration toolkit built for people who need to monitor, patch, and script a running process.

Windows memory hacking library

All-in-one macOS binary analysis: Mach-O parsing, ARM64 disassembly, code signatures, and debugging.

🔎Sniffing and parsing mysql,redis,http,mongodb etc protocol. 抓包截取项目中的数据库请求并解析成相应的语句。

Reverse engineering software using a full system simulator