
WFH
Frida-based dynamic analysis tool that automatically identifies DLL sideloading and COM hijacking vulnerabilities in Windows executables through…

Frida-based dynamic analysis tool that automatically identifies DLL sideloading and COM hijacking vulnerabilities in Windows executables through…

Turn any web app into an API. Chrome extension captures browser traffic, auto-generates schemas, lets AI replay APIs directly. No official API needed.

AFL + DynamoRIO = fuzzing binaries with no source code on Linux

Droidefense: Advance Android Malware Analysis Framework

Lightweight fuzzing of a memory snapshot using KVM

Umap2 is the second revision of NCC Group's python based USB host security assessment tool.

Rust macros and Cargo subcommand to automate fuzzing with afl.rs, including corpus generation and harness implementation, integrated with Rust's…

Intentionally vulnerable Android application.

ATrace is a tool for tracing execution of binaries on Windows.

A security-first MCP server that empowers AI agents to perform automated reverse engineering, malware analysis, forensics, vulnerability research,…

DOM XSS scanner for Single Page Applications

Multi-architecture pcode emulator using Ghidra/Sleigh for AFL++ fuzzing of binaries, firmware, and embedded targets; detects memory-corruption bugs…

LLM-agent-powered concolic execution engine that instruments source code, summarizes path constraints in natural language, and generates test cases…

Trail of Bits Testing Handbook - appsec.guide

User-mode x86_64 binary emulator for malware analysis and reverse engineering. Supports PE, ELF, memory dumps, and raw binaries with syscall tracing,…

Binary code coverage visualizer plugin for Ghidra

Tool to make in memory man in the middle

Automated prompt injection testing framework for LLM-integrated applications with dual-LLM architecture.