
ifuncd-up
GNU IFUNC is the real culprit behind CVE-2024-3094

GNU IFUNC is the real culprit behind CVE-2024-3094

Burp Suite extension for decoding Ethereum JSON-RPC calls and smart contract interactions, supporting multiple chains and automatic ABI retrieval.

match functions in binaries by what they do, not what their bytes look like. behavioral function fingerprinting via microexecution.

An strace-like program for the Windows 'native' API

High-performance HTTP/HTTPS/SOCKS5 MITM proxy in Rust with TLS interception, rule-based request rewriting, traffic capture, breakpoints, script…

A curated list of Android Security materials and resources For Pentesters and Bug Hunters

Open-source mobile security testing suite for iOS and Android. Previously Passionfruit

Documentation and reverse engineering of reCAPTCHA

An API hooking framework for intercepting and monitoring Windows applications

An LLVM-based instrumentation tool for universal taint tracking, dataflow analysis, and tracing.

Burp Suite extension for decoding Web3 JSON-RPC traffic, including smart contract function calls, responses, and ABI resolution with proxy-aware and…

Rusty Hypervisor - Windows Kernel Blue Pill Type-2 Hypervisor in Rust (Codename: Matrix)

ExportHider: Generating Export Table during Runtime to Hide the Exported Functions from the DLL File.

MAPS cloud scanner and response parser for Microsoft Defender research.

A script to detect stack-strings by using emulation (leveraging Unicorn)

Hands-on lab for exploiting and understanding Log4Shell (CVE-2021-44228) using Docker, Kali Linux, Burp Suite and log4j-shell-poc. For teaching and…

A complete, modern demonstration lab for CVE-2014-6271 (Shellshock), including architecture, exploitation steps, Burp Suite usage, reverse shells,…

HTTP Proxy Analysis for reverse engineering protocol communication