
radare2
UNIX-like reverse engineering framework and command-line toolset

UNIX-like reverse engineering framework and command-line toolset

Dissect is a digital forensics & incident response framework and toolset that allows you to quickly access and analyse forensic artefacts from…

Modular malware analysis artifact collection and correlation framework

Python scriptable Reverse Engineering Sandbox, a Virtual Machine instrumentation and inspection framework based on QEMU

Binary analysis and management framework

A fileless reverse shell and C2 framework leveraging direct syscalls, proxy tunneling, and ChaCha20 encryption for AV evasion.

A Virtual Machine For Assessing Android applications, Reverse Engineering and Malware Analysis

Semantic analysis engine for detecting vulnerability fixes in Windows kernel driver patches — 58 YAML rules, Ghidra decompilation, reachability…


Malware/IOC ingestion and processing engine

Snoopy: A distributed tracking and data interception framework

Multi-engine framework for unpacking and analyzing VM-protected binaries using dynamic taint tracking, symbolic execution, pattern classification,…

An API hooking framework for intercepting and monitoring Windows applications

Image-based Android malware detection framework tackling obfuscation and concept drift. Includes curated datasets and Python code for training…

An Open-Source Pre and Post Callback-Based Framework for macOS Kernel Monitoring.

fireELF - Fileless Linux Malware Framework

Automated mobile application security testing framework for Android, iOS, and Windows. Performs static and dynamic analysis, malware detection, and…

An automatic unpacker and logger for DotNet Framework targeting files