
ipatool
Command-line tool that allows searching and downloading app packages (known as ipa files) for iOS, iPadOS, tvOS, and visionOS from the App Store.

Command-line tool that allows searching and downloading app packages (known as ipa files) for iOS, iPadOS, tvOS, and visionOS from the App Store.

A zero-symbol static analysis engine that extracts and mathematically ranks the Windows RPC attack surface using an AHP-based risk model.

"Reverse engineering analysis of RedLine Stealer, a .NET-based info-stealer that uses C2 domains (198.46.86.63, tempuri.org), Windows Defender…

A Windows userland tool to enumerate and classify ALPC ports, including PPL-protected processes.

"Reverse engineering analysis of Agent Tesla, a .NET-based info-stealer that uses APC injection, token manipulation, and registry persistence.…


GarbageMan is a set of tools for analyzing .NET binaries through heap analysis.


Burp Suite extension for decoding Web3 JSON-RPC traffic, including smart contract function calls, responses, and ABI resolution with proxy-aware and…

Some results of my DGA reversing efforts

Malware analysis from the domain goxlr.net

Trusted localhost HTTPS — local CA, /etc/hosts, mDNS LAN sharing, reverse proxy. Maps https://name.local → localhost:port

Analysis of malware found on a server compromised via CVE-2025-55182, including obfuscated dropper, C2 communication, persistence mechanisms, and…

SIDECHANNEL+CVE-2022-38029

Malicious PixelCode is a security research project that demonstrates a covert technique for encoding executable files into pixel data and storing…

Robust Frida-based tool to dump decrypted iOS apps as .ipa from a jailbroken device supports App Store, sideloaded and system.

Gives you one-liners that aids in penetration testing operations, privilege escalation and more

OWASP iGoat - A Learning Tool for iOS App Pentesting and Security by Swaroop Yermalkar