
efiSeek
Ghidra plugin that automates UEFI firmware analysis by identifying known GUIDs, protocols, SMI handlers, and interrupt functions, with headless…

Ghidra plugin that automates UEFI firmware analysis by identifying known GUIDs, protocols, SMI handlers, and interrupt functions, with headless…

pefile is a Python module to read and work with PE (Portable Executable) files

Ghidra module for disassembling, decompiling, and analyzing Ethereum smart contract bytecode. Detects insecure instructions, extracts hidden methods,…

Proof-of-concept exploit for CVE-2023-50564 targeting Pluck CMS, delivering a reverse shell via malicious module installation.

A PowerShell Module Dedicated to Reverse Engineering

Python module for viewing Portable Executable (PE) files in a tree-view using pefile and PyQt5. Can also be used with IDA Pro and Rekall to dump…

External read-only game overlay for Linux. Derived offsets, composed skeletons, optional kernel module for ptrace-independent memory reads and…

GNU Radio out-of-tree (OOT) module for QRadioLink blocks.

Abstracts and expedites the process of backdooring stock firmware images for consumer/SOHO routers

Security Analysis tool for WebAssembly module (wasm) and Blockchain Smart Contracts (BTC/ETH/NEO/EOS)

Parse BIOS/Intel ME/UEFI firmware related structures: Volumes, FileSystems, Files, etc

An IDAPython module for enhancing c++ support on top of ida_kernelcache

PowerShell module for automatic detection of P/Invoke, Dynamic P/Invoke, and D/Invoke in .NET assemblies. Reveals unmanaged API calls, MDTokens, and…

Automatically exported from code.google.com/p/firmware-mod-kit

Ghidra processor description module for NEC/Renesas v810 and v830 families

Magisk module that auto-packages renef_server (dynamic instrumentation for Android)

GhostLock One-Tap Execution App (CVE-2026-43499)

machofile is a module to parse Mach-O binary files