

"Reverse engineering analysis of RedLine Stealer, a .NET-based info-stealer that uses C2 domains (198.46.86.63, tempuri.org), Windows Defender…

Decompiler from Java bytecode to Java, used in IntelliJ IDEA.

Rewe API reverse engineering in Go

A decompiler-agnostic plugin for interacting with AI in your decompiler. GPT-4, Claude, and local models supported!

A tool that is used to hunt vulnerabilities in x64 WDM drivers

Intel Pin-based tracer for API calls, syscalls, and instructions with anti-debug evasion, used for malware analysis and reverse engineering of packed…

The tool is used to analyze the content of the android application in local storage.

Easy Grade Pro 4.1 file parsing bug used as an educational example to show how beginners can start vulnerability research through reverse engineering.

A lightweight dynamic instrumentation library

Frida-based .NET Framework injector and managed method hooking toolkit for runtime tracing, native entrypoint resolution, and dynamic analysis of…

Mobile Helper Framework (mhf) is a tool that automates the process of identifying the framework/technology used to create a mobile application.…

Firmware extractor for CH55x microprocessors

Script to obfuscate a payload the same way as it was done by the XZ utils attack (CVE-2024-3094)

SSLPinDetect is a tool for analyzing Android APKs to detect SSL pinning implementations by scanning for known patterns in decompiled code. It helps…


Scriptable binary emulation framework integrating IDA Pro/Radare2 with Unicorn engine for automated malware analysis, string decryption, and code…

IDA Pro plugin for query based searching within the binary useful mainly for vulnerability research.