
Get-PDInvokeImports
PowerShell module for automatic detection of P/Invoke, Dynamic P/Invoke, and D/Invoke in .NET assemblies. Reveals unmanaged API calls, MDTokens, and…

PowerShell module for automatic detection of P/Invoke, Dynamic P/Invoke, and D/Invoke in .NET assemblies. Reveals unmanaged API calls, MDTokens, and…

A disassembler & experimental decompiler for TLOU2 DC Scripts.

This repository contains an IDA processor for loading and disassembling compiled yara rules.

HTTP Proxy Analysis for reverse engineering protocol communication

Online Reverse Enginerring viewer

Decrypt encrypted SonicOSX firmware images

Visualizes repeated byte sequences in binary files to reveal hidden structure, supporting reverse engineering and pattern discovery without…

An API hooking framework for intercepting and monitoring Windows applications

PETriage: A symbol-unified PE file reader for triage, built for multi-platform and multi-interface use.


Universal signature generation for any system function from all Windows Builds using Winbindex

Demonstrate some functionalities of Morion by generating an exploit for CVE-2022-27646 (stack buffer overflow on Netgear R6700v3 routers).

Obfuscates x86-64 assembly with instruction injection, junk code, constant obfuscation, and runtime decryption to hinder reverse engineering and…

Watchguard Sysa-dl file format

Lightweight native Windows memory scanner for AV/EDR platforms, detecting suspicious mapped images and manual DLL injection techniques by IAT thunk

Obfuscates AutoIt scripts to protect source code from analysis, reverse engineering, and decompilation using advanced obfuscation and polymorphic…

Android and Java bytecode viewer