
BurpSentinel
GUI Burp Plugin to ease discovering of security holes in web applications

GUI Burp Plugin to ease discovering of security holes in web applications

A Solution For Cross-Platform Obfuscated Commands Detection presented on CIS2019 China. 动静态Bash/CMD/PowerShell命令混淆检测框架 - CIS 2019大会

The ARTful library for dynamically modifying the Android Runtime


Detours implementation (x64/x86) which used only ntdll import

Maps execution-coverage data onto Ghidra disassembly to highlight visited code paths and accelerate reverse-engineering workflows.

Xyntia, the black-box deobfuscator

Pishi is a code coverage tool like kcov for macOS.

Exploit for Jenkins serialization vulnerability - CVE-2016-0792

GNU IFUNC is the real culprit behind CVE-2024-3094

A tool for effective testing the binding layer of scripting languages

match functions in binaries by what they do, not what their bytes look like. behavioral function fingerprinting via microexecution.

Runtime schema + RTTI extraction tool for Deadlock, CS2, Dota, and others (Source 2). No source2gen required.

Winstrument is a framework of modular scripts to aid in instrumenting Windows software using Frida for reverse engineering and attack surface…

Runtime JVM analysis toolkit for inspecting classes, methods, fields, constant pool, and bytecode

YARI is an interactive debugger for YARA Language.

A collection of useful resources for hacking WordPress and it's plugins and themes

ComfyEngine is a memory exploration toolkit built for people who need to monitor, patch, and script a running process.