
CaptainHook
Traces user inputs to detect injection vulnerabilities in Java methods via JDWP and Frida, identifying potential command and SQL injection points.

Traces user inputs to detect injection vulnerabilities in Java methods via JDWP and Frida, identifying potential command and SQL injection points.

Obfuscates x86-64 assembly with instruction injection, junk code, constant obfuscation, and runtime decryption to hinder reverse engineering and…

Security profiling for blackbox iOS

Drltrace is a library calls tracer for Windows and Linux applications.

Introduction to the exploitation of ELF binaries.

More than a ReClass port to the .NET platform.

A lightweight dynamic instrumentation library

A Linux version of the ProcDump Sysinternals tool

All reasonably stable tools

An Interactive Binary Patching Plugin for IDA Pro

Open source memory scanner written in C++

SHAREM is a shellcode analysis framework, capable of emulating more than 45,000 WinAPIs and virutally all Windows syscalls. It also contains its own…

Hands-on challenges for learning how to reverse engineer Flutter applications.

IDA Pro plugin for filtering functions by assembly patterns, byte sequences, string/name references, and size constraints, with rule-based search and…

Toy scripts for playing with WinDbg JS API

From Solder to Shell: Full Hardware Exploitation of the Linksys WRT54GL Router (CVE-2022-43973)

Cross-platform library to parse, modify, and abstract ELF, PE, and MachO executable formats. Supports C++, Python, and Rust APIs with disassembler,…

ShowStopper is a tool for helping malware researchers explore and test anti-debug techniques or verify debugger plugins or other solutions that clash…