
peCloakCapstone
Platform independent peCloak fork based on Capstone

Platform independent peCloak fork based on Capstone

Proof of concept exploit of Windows Update Orchestrator Service Elevation of Privilege Vulnerability


BYOVD: Use 360 WFP driver to block EDR/XDR network connection.

Reverse engineering the new Datadome VM 🔥


Extract labels from IDA, Ghidra, Binary Ninja, and Relyze files and export x64dbg database. Including radare2 main address.

Android reverse engineering entirely on-device. Radare2 binary analysis, 8 Java decompilers, Flutter & Unity il2cpp support.

Open-source instrumentation framework for Android apps and Java middleware, modifying code during on-device compilation via the ART compiler.…

LD_PRELOAD magic for Android's AssetManager

Ghidra extension bridging static and dynamic analysis via Frida, enabling scriptable runtime instrumentation for reverse engineering binaries on…

A dynamic unpacking tool



exploit for cve-2025-43529

Create Anti-Copy DRM Malware

A function tracer
