
Process-Dump
Windows tool for dumping malware PE files from memory back to disk for analysis.

Windows tool for dumping malware PE files from memory back to disk for analysis.

Inception is a physical memory manipulation and hacking tool exploiting PCI-based DMA. The tool can attack over FireWire, Thunderbolt, ExpressCard,…

memory search and patch tool on debuggable apk without root & ndk

SentinelNav: zero-dependency, pure Python binary visualization and forensics tool.

CVE-2025-14847 (MongoBleed) scanner and exploit tool. Unauthenticated MongoDB heap memory leak via zlib decompression. Detection, memory extraction,…

An Active Defense and EDR software to empower Blue Teams

Memory modification tool for re-signed ipa supports iOS apps running on iPhone and Apple Silicon Mac without jailbreaking.

Rule-based static and dynamic analysis tool that identifies capabilities in PE, ELF, .NET, and shellcode files, mapping them to MITRE ATT&CK…

Portable Linux RAM acquisition tool for forensics and incident response, capturing LiME-compatible images with optional compression and remote…

MultiDump is a post-exploitation tool for dumping and extracting LSASS memory discreetly.

Platform security assessment tool for dumping and analyzing UEFI/SMM registers, PCI config space, physical memory, SPI flash, and S3 bootscripts with…

Windows memory-forensics and threat hunting tool that scans live process memory for malicious patterns, injection techniques, and reflectively loaded…

Penetration testing utility and antivirus assessment tool.

A frida tool to dump dex in memory to support security engineers analyzing malware.

mXtract - Memory Extractor & Analyzer

SALT - SLUB ALlocator Tracer for the Linux kernel

Stealthy In-Memory Local Password Harvester (SILPH) tool: dump LSA, SAM and DCC2 with indirect syscall

Hide memory artifacts using ROP and hardware breakpoints.