
CVE-2026-51585
rt26cx21x64.sys exploit (Realtek PCIe GbE/2.5GbE/5GbE family)

rt26cx21x64.sys exploit (Realtek PCIe GbE/2.5GbE/5GbE family)

Analysis and ARM64 reproduction of Copy Fail (CVE-2026-31431)

Proof-of-concept for CVE-2021-28476, a Hyper-V vmswitch.sys arbitrary pointer dereference allowing guest-to-host denial-of-service and potential RCE.

Remote kernel exploit for FreeBSD CVE-2026-4747, leveraging a stack buffer overflow in kgssapi.ko to achieve RCE with a reverse shell. Includes…

🔬 An advanced Android research tool for real-time VoIP audio capture (Uplink/Downlink) by dynamically hooking libaudioflinger.so. Tested and built…

Lifts x86-64 binary loops into closed-form SMT constraints via strided interval analysis, enabling O(1) symbolic execution and crackme key recovery.

Open-source mobile security testing suite for iOS and Android. Previously Passionfruit

Automates setup of binary exploitation challenges by patching ELF binaries, fetching matching linkers, unstripping libc, and generating pwntools…

match functions in binaries by what they do, not what their bytes look like. behavioral function fingerprinting via microexecution.

Reconstructs legacy Windows binaries into C source by pairing Ghidra decompiler exports with local LLMs, producing compile-checked candidates and…

Protect process by shellcode

Headless IDA Pro MCP server for AI-assisted binary analysis, powered by idalib

A Windows userland tool to enumerate and classify ALPC ports, including PPL-protected processes.

WslinkVMAnalyzer is a tool to facilitate analysis of code protected by a virtual machine featured in Wslink malware

Assortment of hashing algorithms used in malware

bad stuffs by bad guys

Voltage fault-injection modchip for black-box security evaluation of Starlink terminals, bypassing bootloader signature verification to execute…

A script to detect stack-strings by using emulation (leveraging Unicorn)