
ptrace
Linux ptrace-based process tracing and debugging utility for inspecting system calls, memory, and program execution flow.

Linux ptrace-based process tracing and debugging utility for inspecting system calls, memory, and program execution flow.

.NET deobfuscator and unpacker.

Unpack and deobfuscate VMProtect 2 protected binaries with an emulation-based VM explorer, handler profiler, and experimental LLVM recompiler for…

Runtime libc function auditor that detects file access race conditions and symlink vulnerabilities by hooking filesystem syscalls via LD_PRELOAD,…

An Interactive Binary Patching Plugin for IDA Pro

Tool for reverse engineering macOS/OS X

DLLirant is a tool to automatize the DLL Hijacking researches on a specified binary.

Pishi is a code coverage tool like kcov for macOS.

GNU IFUNC is the real culprit behind CVE-2024-3094

pyREtic is an extensible framework for in-memory Python 2.x bytecode reverse engineering

Time Travel Debugging IDA plugin

VMUnprotect.Dumper can dynamically untamper VMProtected Assembly.

Code Coverage Exploration Plugin for Ghidra

Toy scripts for playing with WinDbg JS API


Detours implementation (x64/x86) which used only ntdll import

Xyntia, the black-box deobfuscator

A tool for effective testing the binding layer of scripting languages