
fnprint
match functions in binaries by what they do, not what their bytes look like. behavioral function fingerprinting via microexecution.

match functions in binaries by what they do, not what their bytes look like. behavioral function fingerprinting via microexecution.

Exploit PoC for CVE-2026-56848, a Node.js HTTP/2 heap-use-after-free that allows remote unauthenticated DoS. Includes raw-socket trigger, ASan build…

VSCode extension for Frida-based mobile reverse engineering: runtime class/module inspection, Java/ObjC/native hook generation, autocomplete, and…

Maps execution-coverage data onto Ghidra disassembly to highlight visited code paths and accelerate reverse-engineering workflows.

A script to detect stack-strings by using emulation (leveraging Unicorn)

The Mobile App Pentest cheat sheet was created to provide concise collection of high value information on specific mobile application penetration…

Sample extensions, scripts, and API uses for WinDbg.

Fermion, an electron wrapper for Frida & Monaco.

Xyntia, the black-box deobfuscator

CodeQL + DTrace = Memory Disclosure Vulnerabilities in XNU

x64 Dynamic Reverse Engineering Toolkit

Golang bindings for PE-sieve

The ARTful library for dynamically modifying the Android Runtime


The repo contains a series of challenges for learning Frida for Android Exploitation.

LLM powered fuzzing via OSS-Fuzz.