
VolWeb
A centralized and enhanced memory analysis platform

A centralized and enhanced memory analysis platform

A powerful and user-friendly binary analysis platform!

More than a ReClass port to the .NET platform.

Platform security assessment tool for dumping and analyzing UEFI/SMM registers, PCI config space, physical memory, SPI flash, and S3 bootscripts with…

Collaborative forensic timeline analysis platform for ingesting, searching, and annotating event logs to support incident response and DFIR…

Hybrid kernel combining Mach, FreeBSD, and IOKit for macOS and iOS. Provides core OS services, driver framework, and security policy enforcement on…

Linux Memory Cryptographic Keys Extractor

Automated cross-platform sandbox that detonates suspicious files in isolated VMs/emulators, captures network and memory artifacts, and creates LLM…

Distributed & real time digital forensics at the speed of the cloud

Free hands-on digital forensics labs for students and faculty

Dual-purpose JNDI injection and Java deserialization exploitation framework with advanced bypass capabilities for WAF, RASP, and high JDK versions.…

Some of my publicly available Malware analysis and Reverse engineering.

Example of using revealed "Spectre" exploit (CVE-2017-5753 and CVE-2017-5715)

Dumping processes using the power of kernel space !

The ultimate steganography and digital forensics toolkit. Hide and extract data across images, audio, video, documents, and network packets, or run…

:knife: Scan memory for secrets and more. Maybe eventually a full /proc toolkit.

Techniques based on named pipes for pool overflow exploitation targeting the most recent (and oldest) Windows versions demonstrated on CVE-2020-17087…
