
ghidra
Ghidra is a software reverse engineering (SRE) framework

Ghidra is a software reverse engineering (SRE) framework

An open-source user mode debugger for Windows. Optimized for reverse engineering and malware analysis.

QCSuper is a tool communicating with Qualcomm-based phones and modems, allowing to capture raw 2G/3G/4G radio frames, among other things.

GoTEE - example application

CVE-2026-50416: Windows 11 KASLR bypass

CVE-2026-50142 — Heap allocation vulnerability in libheif HEIF sequence parser

A BOF designed to inspect processes memory and addresses

Experimental kernel-mode EDR research project focused on explainable detection of suspicious in-memory execution patterns, producing human-readable…

Complete analysis of CVE-2025-21298, a double free vulnerability related to ole32 library in windows.

Library for unwinding processor call stacks, supporting multiple architectures and operating systems, with build and regression testing instructions.

C library for stack unwinding and backtrace generation, supporting multiple architectures and operating systems, with build and regression testing…

Some of my publicly available Malware analysis and Reverse engineering.

Analyze, extract and visualize features, artifacts and IoCs of files and memory dumps (Windows, Linux, Android, iPhone, Blackberry, macOS binaries,…

More than a ReClass port to the .NET platform.

Simple Process Dumper using DMA over a PCIe FPGA device

:knife: Scan memory for secrets and more. Maybe eventually a full /proc toolkit.


CVE-2018-4343: Proof-of-concept for a use-after-free in the GSSCred daemon on macOS and iOS.