
pyrebox
Python scriptable Reverse Engineering Sandbox, a Virtual Machine instrumentation and inspection framework based on QEMU

Python module for viewing Portable Executable (PE) files in a tree-view using pefile and PyQt5. Can also be used with IDA Pro and Rekall to dump…

Bash-based scanner detecting indicators of compromise from CVE-2023-3519 exploitation on Citrix ADC appliances, supporting live and forensic image…

reverse engineering Gemini's SynthID detection

Direct Memory Access (DMA) Attack Software

Original PoC for CVE-2023-32784

Incident Response & Digital Forensics Debugging Extension

Labtainers: A Docker-based cyber lab framework

Data from a BRAWL Automated Adversary Emulation Exercise

Files + Writeups for DownUnderCTF 2022 Challenges

Volatility Explorer Suit (volatility 3)


bad stuffs by bad guys

KeePass 2.X dumper (CVE-2023-32784)

Breakdown of a c2-network of chinese beamers - SilentSDK-Analysis

Post-Exploitation EVTX Analyzer for BloodHound Mapping

Presented at Recon Montreal 2018