
DECAF
DECAF (short for Dynamic Executable Code Analysis Framework) is a binary analysis platform based on QEMU. This is also the home of the DroidScope…

DECAF (short for Dynamic Executable Code Analysis Framework) is a binary analysis platform based on QEMU. This is also the home of the DroidScope…

Droidefense: Advance Android Malware Analysis Framework

Scriptable binary emulation framework integrating IDA Pro/Radare2 with Unicorn engine for automated malware analysis, string decryption, and code…

A Binary Genetic Traits Lexer Framework

SHAREM is a shellcode analysis framework, capable of emulating more than 45,000 WinAPIs and virutally all Windows syscalls. It also contains its own…

Multi-engine framework for unpacking and analyzing VM-protected binaries using dynamic taint tracking, symbolic execution, pattern classification,…

idahunt is a framework to analyze binaries with IDA Pro and hunt for things in IDA Pro

CERT Kaiju is a binary analysis framework extension for the Ghidra software reverse engineering suite. This repository is a "mirror" -- please file…

pyREtic is an extensible framework for in-memory Python 2.x bytecode reverse engineering

Shellcode emulator written with Unicorn Framework With Process Dump Emulation Environment

An automatic unpacker and logger for DotNet Framework targeting files

C-based Android static analysis framework for decompilation, secret detection, endpoint discovery, permission analysis, and native library scanning…

Crawlector is a threat hunting framework designed for scanning websites for malicious objects.

A binary analysis framework

NebulaPulsar is a proof-of-concept in-memory implant framework for Java (JSP) and ASP.NET (ASPX/ASHX/ASMX) webshells, originally developed as part of…

AST-based Python code transformation & deobfuscation framework

An API hooking framework for intercepting and monitoring Windows applications

This is part of a module for the framework that i'm constantly developing. Currently only information of the C2 are disclosed here.