
cve_2023_38831_scanner
This Python application scans for the CVE-2023-38831 vulnerability in WinRAR.

This Python application scans for the CVE-2023-38831 vulnerability in WinRAR.

MongoBleed: CVE-2025-14847 Memory Leak Discovery Tool

Finding secrets in kernel and user memory

Lightweight native Windows memory scanner for AV/EDR platforms, detecting suspicious mapped images and manual DLL injection techniques by IAT thunk

Tool for extracting Windows credentials (passwords, hashes, Kerberos tickets) from memory and performing pass-the-hash, pass-the-ticket, and golden…

Scans a given process. Recognizes and dumps a variety of potentially malicious implants (replaced/injected PEs, shellcodes, hooks, in-memory patches).

Cross-platform memory dumper using Frida to extract accessible memory from iOS, Android, and Windows applications for forensic analysis and…

a critical memory disclosure vulnerability in MongoDB's zlib compression handling. This tool allows security researchers to extract sensitive data…

Main repository to pull all NCC Group Cisco ASA-related tool projects.

Bypasses PPL protection to dump LSASS process memory, obfuscates dump files with XOR, and exfiltrates them remotely via RAW or SMB without writing to…

Command-line DFIR tool for scanning Windows ATM systems to detect malware traces in process memory and disk, with automated memory dump creation for…

Moneta is a live usermode memory analysis tool for Windows with the capability to detect malware IOCs


Hide memory artifacts using ROP and hardware breakpoints.

Universal Windows extraction tool that detects unknown files and routes them to the right bundled extractor.

QCSuper is a tool communicating with Qualcomm-based phones and modems, allowing to capture raw 2G/3G/4G radio frames, among other things.

Poc for CVE-2025-7771 to modify PPL Protection

Windows tool for dumping malware PE files from memory back to disk for analysis.