
windbg_js_scripts
Toy scripts for playing with WinDbg JS API

Toy scripts for playing with WinDbg JS API

The ARTful library for dynamically modifying the Android Runtime


A native APK and DEX decompiler written in Rust

Detours implementation (x64/x86) which used only ntdll import

Maps execution-coverage data onto Ghidra disassembly to highlight visited code paths and accelerate reverse-engineering workflows.

Pishi is a code coverage tool like kcov for macOS.

GNU IFUNC is the real culprit behind CVE-2024-3094

A tool for effective testing the binding layer of scripting languages

Xyntia, the black-box deobfuscator

match functions in binaries by what they do, not what their bytes look like. behavioral function fingerprinting via microexecution.

Runtime schema + RTTI extraction tool for Deadlock, CS2, Dota, and others (Source 2). No source2gen required.

Runtime JVM analysis toolkit for inspecting classes, methods, fields, constant pool, and bytecode

YARI is an interactive debugger for YARA Language.

A Magisk module that simplifies running the Frida server on Android, with easy management commands to download specific versions, enable or disable…

Helper script for Windows kernel debugging with IDA Pro on native Bochs debugger (including PDB symbols)

ComfyEngine is a memory exploration toolkit built for people who need to monitor, patch, and script a running process.

Agent-native CLI wrapping IDA Pro IDALib for stateless, JSON-output binary analysis: disassembly, Hex-Rays decompilation, CFG, xrefs, strings, and…