
xyntia
Xyntia, the black-box deobfuscator

Xyntia, the black-box deobfuscator

Pishi is a code coverage tool like kcov for macOS.

Exploit for Jenkins serialization vulnerability - CVE-2016-0792

A tool for effective testing the binding layer of scripting languages

match functions in binaries by what they do, not what their bytes look like. behavioral function fingerprinting via microexecution.

Runtime schema + RTTI extraction tool for Deadlock, CS2, Dota, and others (Source 2). No source2gen required.

Winstrument is a framework of modular scripts to aid in instrumenting Windows software using Frida for reverse engineering and attack surface…

Runtime JVM analysis toolkit for inspecting classes, methods, fields, constant pool, and bytecode

YARI is an interactive debugger for YARA Language.

A collection of useful resources for hacking WordPress and it's plugins and themes

NebulaPulsar is a proof-of-concept in-memory implant framework for Java (JSP) and ASP.NET (ASPX/ASHX/ASMX) webshells, originally developed as part of…

GNU IFUNC is the real culprit behind CVE-2024-3094

A Framework for Integrating Application Security into Software Engineering (FIASSE) using the Securable Software Engineering Model (SSEM)

CodeQL + DTrace = Memory Disclosure Vulnerabilities in XNU

MCP-powered reverse engineering platform connecting WinDbg, IDA Pro & x64dbg with 160+ AI-accessible debugging and analysis tools.

Instrumented fuzzer for PLC-based ICS control applications, targeting Codesys runtime on Wago controllers to uncover memory corruption and…

Fuzzing Framework for Modules in Apache HTTPD Server
