
NebulaPulsar
NebulaPulsar is a proof-of-concept in-memory implant framework for Java (JSP) and ASP.NET (ASPX/ASHX/ASMX) webshells, originally developed as part of…

NebulaPulsar is a proof-of-concept in-memory implant framework for Java (JSP) and ASP.NET (ASPX/ASHX/ASMX) webshells, originally developed as part of…

Distributed coverage-guided fuzzing engine compatible with libFuzzer targets; scales to thousands of concurrent jobs, uses sanitizers and corpus…

A Magisk module that simplifies running the Frida server on Android, with easy management commands to download specific versions, enable or disable…

Helper script for Windows kernel debugging with IDA Pro on native Bochs debugger (including PDB symbols)

MCP-powered reverse engineering platform connecting WinDbg, IDA Pro & x64dbg with 160+ AI-accessible debugging and analysis tools.

CodeQL + DTrace = Memory Disclosure Vulnerabilities in XNU

ExportHider: Generating Export Table during Runtime to Hide the Exported Functions from the DLL File.

Agent-native CLI wrapping IDA Pro IDALib for stateless, JSON-output binary analysis: disassembly, Hex-Rays decompilation, CFG, xrefs, strings, and…

Fuzzing Framework for Modules in Apache HTTPD Server


A script to detect stack-strings by using emulation (leveraging Unicorn)

Golang bindings for PE-sieve

An API hooking framework for intercepting and monitoring Windows applications

A Framework for Integrating Application Security into Software Engineering (FIASSE) using the Securable Software Engineering Model (SSEM)

Scans code diffs with context to build an impact graph and uses LLMs to find vulnerabilities, supporting multi-repo scans and CI gating with SARIF…

Dynamic branch-divergence finder for native code -- traces two Frida executions and finds the exact instruction where they diverge.

ADT is a toolset designed to help model application behavior, research and test security vulnerabilities, and facilitate reversing hostile code.

Exploit PoC for CVE-2026-56848, a Node.js HTTP/2 heap-use-after-free that allows remote unauthenticated DoS. Includes raw-socket trigger, ASan build…