
dynamorio
Runtime instrumentation framework for building dynamic analysis tools: tracing, profiling, code coverage, memory debugging, fuzzing, and disassembly…

Runtime instrumentation framework for building dynamic analysis tools: tracing, profiling, code coverage, memory debugging, fuzzing, and disassembly…

Autonomous security research framework integrating static analysis, binary analysis, fuzzing, LLM-powered vulnerability validation, exploit…

A security-first MCP server that empowers AI agents to perform automated reverse engineering, malware analysis, forensics, vulnerability research,…

Dynamic branch-divergence finder for native code -- traces two Frida executions and finds the exact instruction where they diverge.

Curated collection of LLVM security resources covering binary lifting, code obfuscation, static analysis, symbolic execution, sanitizers, and…

Rust macros and Cargo subcommand to automate fuzzing with afl.rs, including corpus generation and harness implementation, integrated with Rust's…

Security-oriented Go toolchain, focused on state-of-the-art fuzzing capabilities.

An LLM-driven fuzzing pipeline powered by the GitHub Security Lab Taskflow Agent

LLM-agent-powered concolic execution engine that instruments source code, summarizes path constraints in natural language, and generates test cases…

A lightweight dynamic instrumentation library

Static XML fixtures for authorized bug bounty testing of XML parser behaviour (CVE-2026-45071).

Automatic SSTI detection tool with interactive interface

Pishi is a code coverage tool like kcov for macOS.

Evidence-driven Linux kernel vulnerability research harness used in the investigation of CVE-2026-31720

A pure Rust reimplementation of libxml2

Fix-Like Artifacts With Embedded Defects

Checker for Lifetimes and other Refinement types

Trail of Bits Testing Handbook - appsec.guide