
unlicense
Dynamic unpacker and import fixer for Themida/WinLicense 2.x and 3.x.

Dynamic unpacker and import fixer for Themida/WinLicense 2.x and 3.x.

Dynamic unpacker based on PE-sieve

Static config extractor for SmokeLoader samples that deobfuscates, unpacks, and emulates protected routines to recover final-stage C2 settings.

Use YARA rules on Time Travel Debugging traces

Python bindings for BochsCPU

Exploit scripts for CVE-2025-62507, a stack buffer overflow in Redis 8.2.0. Provides x86-64 and ARM64 ROP chain exploits with shellcode generation…

A Libemu Cython wrapper

Python Decoders for Common Remote Access Trojans

End-to-end exploitation lab for CVE-2025-5548 (FreeFloat FTP Server stack buffer overflow). Includes static analysis with IDA/Ghidra, binary fuzzing,…

Educational lab for analyzing and exploiting CVE-2025-5548 (FreeFloat FTP Server buffer overflow) with step-by-step guides, debugger setup, and…

A security-first MCP server that empowers AI agents to perform automated reverse engineering, malware analysis, forensics, vulnerability research,…

Runtime tracer for Node.js malware analysis that hooks core modules, logs calls, spoofs anti-analysis checks, and captures file writes and HTTP…

Buffer overflow in FreeFloat FTP Server 1.0

Collection of scripts for malware analysis, deobfuscation, and configuration extraction. Supports static analysis, unpacking, shellcode conversion,…

Static and dynamic analysis tool for detecting malicious code, suspicious binaries, and privacy violations

BARF : A multiplatform open source Binary Analysis and Reverse engineering Framework

Triton is a dynamic binary analysis library. Build your own program analysis tools, automate your reverse engineering, perform software verification…

DrSemu - Sandboxed Malware Detection and Classification Tool Based on Dynamic Behavior