
gf
A wrapper around grep, to help you grep for things

A wrapper around grep, to help you grep for things

Open-source mobile security testing suite for iOS and Android. Previously Passionfruit

Cargo subcommand for coverage-guided Rust fuzzing with libFuzzer: create and run fuzz targets, minimize failures and corpora, and report coverage.

The repo contains a series of challenges for learning Frida for Android Exploitation.

Scriptable debugger for Android Dalvik VM using JDWP/DDM interfaces to hook methods, inspect process state, and modify runtime behavior without…

Unofficial frida extension for VSCode

Automated DLL Hijacking Discovery, Validation, and Confirmation. Turning local misconfigurations into weaponized, confirmed attack paths.

Documentation and reverse engineering of reCAPTCHA

Code Coverage Exploration Plugin for Ghidra

VMUnprotect.Dumper can dynamically untamper VMProtected Assembly.

A PoC Java Stager which can download, compile, and execute a Java file in memory.

GUI Burp Plugin to ease discovering of security holes in web applications

The ARTful library for dynamically modifying the Android Runtime

Winstrument is a framework of modular scripts to aid in instrumenting Windows software using Frida for reverse engineering and attack surface…

Exploit for Jenkins serialization vulnerability - CVE-2016-0792

NebulaPulsar is a proof-of-concept in-memory implant framework for Java (JSP) and ASP.NET (ASPX/ASHX/ASMX) webshells, originally developed as part of…

GNU IFUNC is the real culprit behind CVE-2024-3094

match functions in binaries by what they do, not what their bytes look like. behavioral function fingerprinting via microexecution.