
mal_unpack
Runs packed malware in a controlled environment, waits for self-unpacking, dumps PE files and shellcodes from memory, and terminates the process.

Runs packed malware in a controlled environment, waits for self-unpacking, dumps PE files and shellcodes from memory, and terminates the process.

A python script developed to process Windows memory images based on triage type.

GoTEE - example application

Dump cookies and credentials directly from Chrome/Edge process memory

QCSuper is a tool communicating with Qualcomm-based phones and modems, allowing to capture raw 2G/3G/4G radio frames, among other things.

Heap analysis tooling for mempool

A Generic Windows Memory Scraping Tool

7-Zip XZ Decoder Heap Buffer Overflow - Full analysis, root cause, PoC, and RCE exploitation roadmap

This Poc demonstrate Arbitrary read/write primitives provided by CVE-2025-7771

Techniques based on named pipes for pool overflow exploitation targeting the most recent (and oldest) Windows versions demonstrated on CVE-2020-17087…

Vulnerability Found on Squid Proxy.

PoC for CVE-2026-2005

Crash PoC

ComfyEngine is a memory exploration toolkit built for people who need to monitor, patch, and script a running process.