
Winstrument
Winstrument is a framework of modular scripts to aid in instrumenting Windows software using Frida for reverse engineering and attack surface…

Winstrument is a framework of modular scripts to aid in instrumenting Windows software using Frida for reverse engineering and attack surface…

Security oriented software fuzzer. Supports evolutionary, feedback-driven fuzzing based on code coverage (SW and HW based)

An Interactive Binary Patching Plugin for IDA Pro

Runtime Windows API interception library for hooking, monitoring, and instrumenting function calls. Supports binary rewriting and DLL injection,…

Rusty Hypervisor - Windows Kernel Blue Pill Type-2 Hypervisor in Rust (Codename: Matrix)

Static Binary Instrumentation tool for Windows x64 executables

The Mobile App Pentest cheat sheet was created to provide concise collection of high value information on specific mobile application penetration…

DLLirant is a tool to automatize the DLL Hijacking researches on a specified binary.

Elite is the client-side component of the Covenant project. Covenant is a .NET command and control framework that aims to highlight the attack…

Windows NT ioctl bruteforcer and modular fuzzer

ExportHider: Generating Export Table during Runtime to Hide the Exported Functions from the DLL File.

Toy scripts for playing with WinDbg JS API

A Solution For Cross-Platform Obfuscated Commands Detection presented on CIS2019 China. 动静态Bash/CMD/PowerShell命令混淆检测框架 - CIS 2019大会

Cargo subcommand for coverage-guided Rust fuzzing with libFuzzer: create and run fuzz targets, minimize failures and corpora, and report coverage.

Automated DLL Hijacking Discovery, Validation, and Confirmation. Turning local misconfigurations into weaponized, confirmed attack paths.

Runtime instrumentation framework for building dynamic analysis tools: tracing, profiling, code coverage, memory debugging, fuzzing, and disassembly…

Detect, analyze and uniquely identify crashes in Windows applications

Helper script for Windows kernel debugging with IDA Pro on native Bochs debugger (including PDB symbols)