
Flerken
A Solution For Cross-Platform Obfuscated Commands Detection presented on CIS2019 China. 动静态Bash/CMD/PowerShell命令混淆检测框架 - CIS 2019大会

A Solution For Cross-Platform Obfuscated Commands Detection presented on CIS2019 China. 动静态Bash/CMD/PowerShell命令混淆检测框架 - CIS 2019大会

A powerful decompiler that lets you reverse-engineer React Native mobile apps by converting their compiled Hermes bytecode (.hbc) files back into…

Exploit for Jenkins serialization vulnerability - CVE-2016-0792

Fuzzing Framework for Modules in Apache HTTPD Server

Laravel debug mode - Remote Code Execution (RCE)

Fast XSS scanner with parameter analysis, WAF fingerprinting, and DOM/AST verification. Supports reflected, stored, and DOM-based XSS detection via…

Security oriented software fuzzer. Supports evolutionary, feedback-driven fuzzing based on code coverage (SW and HW based)

LLM powered fuzzing via OSS-Fuzz.

A security scanner for your LLM agentic workflows

Open-source web application security scanner for automated vulnerability detection, manual penetration testing, and API security testing with a…

Fil-C: completely compatible memory safety for C and C++

A collection of my Frida instrumentation scripts to reverse engineer mobile apps and more.

Scriptable debugger for Android Dalvik VM using JDWP/DDM interfaces to hook methods, inspect process state, and modify runtime behavior without…

A Magisk module that simplifies running the Frida server on Android, with easy management commands to download specific versions, enable or disable…

ADT is a toolset designed to help model application behavior, research and test security vulnerabilities, and facilitate reversing hostile code.

Reproduces the CVE-2026-70638 integer overflow in llama.cpp Android JNI with a safe arithmetic demo, malicious GGUF generator, and Frida hook for…

This is an Exploit App I made when solving the DocumentViewer challenge (CVE-2021-40724) from MobileHackingLab. It will download a libdocviewe_pro.so…

Unofficial frida extension for VSCode