
polytracker
An LLVM-based instrumentation tool for universal taint tracking, dataflow analysis, and tracing.

An LLVM-based instrumentation tool for universal taint tracking, dataflow analysis, and tracing.

match functions in binaries by what they do, not what their bytes look like. behavioral function fingerprinting via microexecution.

A script to detect stack-strings by using emulation (leveraging Unicorn)

x64 Dynamic Reverse Engineering Toolkit

VMUnprotect.Dumper can dynamically untamper VMProtected Assembly.

Code Coverage Exploration Plugin for Ghidra

Datajack Proxy allows you to intercept TLS traffic in native x86 applications across platforms

Windows NT ioctl bruteforcer and modular fuzzer

Winstrument is a framework of modular scripts to aid in instrumenting Windows software using Frida for reverse engineering and attack surface…

Windows named pipe hooking toolkit

Trusted localhost HTTPS — local CA, /etc/hosts, mDNS LAN sharing, reverse proxy. Maps https://name.local → localhost:port

GNU IFUNC is the real culprit behind CVE-2024-3094

An API hooking framework for intercepting and monitoring Windows applications

HTTP Proxy Analysis for reverse engineering protocol communication

Proof-of-concept exploit for CVE-2024-0311 bypassing Skyhigh Client Proxy policy via process injection and named pipe manipulation, with custom…

An strace-like program for the Windows 'native' API

ExportHider: Generating Export Table during Runtime to Hide the Exported Functions from the DLL File.