
maat
Dynamic symbolic execution and binary analysis framework with taint analysis, constraint solving, multi-arch emulation via Ghidra's Sleigh, and…

Dynamic symbolic execution and binary analysis framework with taint analysis, constraint solving, multi-arch emulation via Ghidra's Sleigh, and…

IDA Python plugin for fast, location-driven matching of open-source library symbols in binaries, enabling efficient reverse engineering and…

Offensive security research hub aggregating original vulnerability advisories, CVE proof-of-concept exploits, conference talks, and internal tooling…

IDA Pro plugin for query based searching within the binary useful mainly for vulnerability research.

Evaluation framework for studying LLM agents that automatically generate working exploits from vulnerability reports, bypassing modern security…

Automated binary vulnerability analysis tool that decompiles executables via Ghidra, scans pseudo-C code with Semgrep, and validates findings using…

Curated Ghidra scripts to automate reverse engineering and vulnerability analysis: locate insecure functions, extract decompiler pseudocode, fix…

A security-first MCP server that empowers AI agents to perform automated reverse engineering, malware analysis, forensics, vulnerability research,…

Static analysis framework that identifies fuzzable function targets in source code and binaries, generates harness templates, and integrates with…

Vulnerability research assistant that locates calls to potentially insecure API functions in a binary file.

Vulnerability research assistant that extracts pseudocode from the IDA Hex-Rays decompiler.

Fuzzy comparison tool for deobfuscating Android APKs by identifying renamed functions across versions, generating mapping files and interactive HTML…

Proof of concept exploit of Windows Update Orchestrator Service Elevation of Privilege Vulnerability

Vivisect plugin enabling function emulation, function recon, and interactive Python CLI for emulation-driven reverse engineering and vulnerability…

SnatchBox (CVE-2020-27935) is a sandbox escape vulnerability and exploit affecting macOS up to version 10.15.x

Independent IoT security research, vulnerability disclosures, and PoCs focusing on firmware analysis, hardware interfaces, and cryptographic flaws.

Curated repository of Windows kernel patch diffs with automated vulnerability analysis, exploit primitive mapping, and debugging aids for security…

Detection, mitigation, and reverse-engineering tooling for CVE-2026-41940 (SessionScribe): the cPanel/WHM unauthenticated session-forgery…