
CAPEv2
Malware Configuration And Payload Extraction

Malware Configuration And Payload Extraction

[Official] Android reverse engineering tool focused on dynamic instrumentation automation leveraging Frida. It disassembles dex, analyzes it…


Proof-of-concept for authenticated OS command injection in TP-Link router firmware. Includes decryption, QEMU-based encryption hook, and 15-character…

Agent Skill for operating renef.io — Android ARM64 dynamic instrumentation: hook native/Java, patch memory, trace syscalls, bypass SSL pinning/root…

A DTrace on Windows Reimplementation

Injects code into ELF executables post-build

x64 Dynamic Reverse Engineering Toolkit

The first analysis framework for CPU microcode

C++ DLL that performs Import Address Table hooking by parsing PE headers and redirecting imported function addresses to a custom hook inside a target…

A set of scripts that ease working with frida

Scriptable debugger for Android Dalvik VM using JDWP/DDM interfaces to hook methods, inspect process state, and modify runtime behavior without…