
dynmx
Signature-based detection of malware features based on Windows API call sequences. It's like YARA for sandbox API traces!

Signature-based detection of malware features based on Windows API call sequences. It's like YARA for sandbox API traces!

Web-based tool for browsing mobile application sandboxes, previewing SQLite databases and binary files, and downloading app data via Frida…

DrSemu - Sandboxed Malware Detection and Classification Tool Based on Dynamic Behavior

UNIX-like reverse engineering framework and command-line toolset

Go tool and Nuclei template for testing James Kettle's (CVE-2025-32094) HTTP/1.1 must die: the desync endgame

Runtime Mobile Security (RMS) 📱🔥 - is a powerful web interface that helps you to manipulate Android and iOS Apps at Runtime

Stage two containers

DECAF (short for Dynamic Executable Code Analysis Framework) is a binary analysis platform based on QEMU. This is also the home of the DroidScope…

bash script to facilitate some aspects of an Android application assessment

Automatic analysis of SWF files based on some heuristics. Extensible via plugins.

JAW: A Graph-based Security Analysis Framework for Client-side JavaScript

Exploit for CVE-2022-25173 targeting Jenkins Pipeline Groovy Plugin's CPS interpreter sandbox bypass, enabling arbitrary code execution within…

Easily create full virtual machines that are sandboxed for development or computer use models.

Multi-architecture pcode emulator using Ghidra/Sleigh for AFL++ fuzzing of binaries, firmware, and embedded targets; detects memory-corruption bugs…

Frida-based in-process fuzzing suite with AFL++ proxy, standalone active/passive modes, and shared memory communication for high-performance…

Umap2 is the second revision of NCC Group's python based USB host security assessment tool.

iOS Malicious Bit Hunter is a malicious plug-in detection engine for iOS applications. It can analyze the head of the macho file of the injected…

A set of scripts that ease working with frida