
cve_2023_38831_scanner
This Python application scans for the CVE-2023-38831 vulnerability in WinRAR.

This Python application scans for the CVE-2023-38831 vulnerability in WinRAR.

Lightweight native Windows memory scanner for AV/EDR platforms, detecting suspicious mapped images and manual DLL injection techniques by IAT thunk

Scans a given process. Recognizes and dumps a variety of potentially malicious implants (replaced/injected PEs, shellcodes, hooks, in-memory patches).

All reasonably stable tools

CVE-2025-14847 (MongoBleed) scanner and exploit tool. Unauthenticated MongoDB heap memory leak via zlib decompression. Detection, memory extraction,…

Hide memory artifacts using ROP and hardware breakpoints.

IPED Digital Forensic Tool. It is an open source software that can be used to process and analyze digital evidence, often seized at crime scenes by…

OS X Auditor is a free Mac OS X computer forensics tool

Software sandbox for storage of sensitive information in memory.

Inception is a physical memory manipulation and hacking tool exploiting PCI-based DMA. The tool can attack over FireWire, Thunderbolt, ExpressCard,…

tool to extract passwords from TeamViewer memory using Frida

DLL Injection tool to unlock guest VMs

A little tool to play with the Seclogon service

RansomLord is a proof-of-concept Anti-Ransomware exploitation tool that automates the creation of PE files, used to compromise ransomware…

Main repository to pull all NCC Group Cisco ASA-related tool projects.

This tool leverages the Process Forking technique using the RtlCreateProcessReflection API to clone the lsass.exe process. Once the clone is created,…

Panic button for protection against cold boot attacks

SentinelNav: zero-dependency, pure Python binary visualization and forensics tool.