
wtf
Distributed, code-coverage guided snapshot-based fuzzer for user and kernel-mode targets on Windows and Linux, with emulator and hypervisor backends.

Distributed, code-coverage guided snapshot-based fuzzer for user and kernel-mode targets on Windows and Linux, with emulator and hypervisor backends.

A lightweight, multi-layer Linux sandbox combining namespaces, pivot_root, seccomp-bpf, capability dropping, and an evidence-based verdict engine…

An x86-64 code virtualizer for VM based obfuscation

The reverse-engineering expert agent: plans its own analysis path, derives every fact from raw evidence, and converges under mechanical verification…

AFL + DynamoRIO = fuzzing binaries with no source code on Linux

ATrace is a tool for tracing execution of binaries on Windows.

Security-oriented Go toolchain, focused on state-of-the-art fuzzing capabilities.

A benchmark for evaluating AI agents on fixing real-world security vulnerabilities.

Frida-based .NET Framework injector and managed method hooking toolkit for runtime tracing, native entrypoint resolution, and dynamic analysis of…

Local-first macOS research browser built on a custom Brave build that captures network traffic, fingerprints, scripts, and runtime evidence for…

Java library for XML serialization and deserialization, with a focus on the CVE-2020-26217 deserialization vulnerability exploit.

Exploit for CVE-2022-25173 targeting Jenkins Pipeline Groovy Plugin's CPS interpreter sandbox bypass, enabling arbitrary code execution within…

Skills for threat modeling, scanning, triage, patching, plus an autonomous scanning harness you can /customize

Trail of Bits Testing Handbook - appsec.guide

JAW: A Graph-based Security Analysis Framework for Client-side JavaScript


UNIX-like reverse engineering framework and command-line toolset

Allows you to emulate an Android native library, and an experimental iOS emulation