
lightkeeper
Maps execution-coverage data onto Ghidra disassembly to highlight visited code paths and accelerate reverse-engineering workflows.

Maps execution-coverage data onto Ghidra disassembly to highlight visited code paths and accelerate reverse-engineering workflows.

A collection of useful resources for hacking WordPress and it's plugins and themes

YARI is an interactive debugger for YARA Language.

Winstrument is a framework of modular scripts to aid in instrumenting Windows software using Frida for reverse engineering and attack surface…

GNU IFUNC is the real culprit behind CVE-2024-3094

Exploit for Jenkins serialization vulnerability - CVE-2016-0792

NebulaPulsar is a proof-of-concept in-memory implant framework for Java (JSP) and ASP.NET (ASPX/ASHX/ASMX) webshells, originally developed as part of…

Xyntia, the black-box deobfuscator

A Magisk module that simplifies running the Frida server on Android, with easy management commands to download specific versions, enable or disable…

Helper script for Windows kernel debugging with IDA Pro on native Bochs debugger (including PDB symbols)

CodeQL + DTrace = Memory Disclosure Vulnerabilities in XNU

ExportHider: Generating Export Table during Runtime to Hide the Exported Functions from the DLL File.

A Framework for Integrating Application Security into Software Engineering (FIASSE) using the Securable Software Engineering Model (SSEM)


A script to detect stack-strings by using emulation (leveraging Unicorn)

An API hooking framework for intercepting and monitoring Windows applications
