
icebox
Virtual Machine Introspection, Tracing & Debugging

Virtual Machine Introspection, Tracing & Debugging

A revival of the classic and legendary KsDumper

Linux Memory Cryptographic Keys Extractor

Enumerate various traits from Windows processes as an aid to threat hunting

Tool to make in memory man in the middle

BOF to run PE in Cobalt Strike Beacon without console creation

PoC and technical details of CVE-2025-24204

A canary designed to minimize the impact from certain Ransomware actors

PoC for CVE-2026-3609 - XIGNCODE3 xhunter1.sys handle leak enabling PPL bypass and LSASS dumping

Potential Integer Overflow Leading To Heap Overflow in AMD KFD.

Poc for CVE-2025-7771 to modify PPL Protection

Use CVE-2016-3308 corrupt win32k desktop heap

Abuses macOS debugger entitlements and DYLD_INSERT_LIBRARIES to dump or search a running process's memory while shifting EDR attribution to a signed…

Vulnerability Found on Squid Proxy.

AI-first reverse-engineering toolkit: static analysis, SSA decompiler, live memory, provenance. Source-available (PolyForm Noncommercial).

Easy-to-use live forensics toolbox for Linux endpoints

Penetration testing utility and antivirus assessment tool.