
CAPEv2
Malware Configuration And Payload Extraction

Malware Configuration And Payload Extraction


B2R2 is a fully managed binary analysis framework written in F#. It provides a rich set of algorithms, functions, and tools for reverse engineering,…

.NET Decompiler with support for PDB generation, ReadyToRun, Metadata (&more) - cross-platform!

Program for determining types of files for Windows, Linux and MacOS.

An open-source user mode debugger for Windows. Optimized for reverse engineering and malware analysis.

User-mode x86_64 binary emulator for malware analysis and reverse engineering. Supports PE, ELF, memory dumps, and raw binaries with syscall tracing,…

Educational repository documenting the full exploitation lifecycle of a stack buffer overflow in FreeFloat FTP Server 1.0, including fuzzing, EIP…

Runtime instrumentation framework for building dynamic analysis tools: tracing, profiling, code coverage, memory debugging, fuzzing, and disassembly…


A pure-Python library that lets you inspect, modify and search the memory of any running process in a few lines of Python :snake: .

MCP server for reverse engineering Windows executables and binary formats. Combines static triage, Ghidra-assisted function recovery, plugin-driven…

A True Instrumentable Binary Emulation Framework

edb is a cross-platform AArch32/x86/x86-64 debugger.

MCP server integrating IDA Pro with AI agents, featuring a stateless gateway for multi-session management, a relational SQL query engine for binary…

🪅 Windows & Linux userspace emulator

IDA Pro plugin that implements more user-friendly register and stack views

Official OpenOCD Read-Only Mirror (no pull requests)