
ret-sync
ret-sync is a set of plugins that helps to synchronize a debugging session (WinDbg/GDB/LLDB/OllyDbg2/x64dbg) with IDA/Ghidra/Binary Ninja…

ret-sync is a set of plugins that helps to synchronize a debugging session (WinDbg/GDB/LLDB/OllyDbg2/x64dbg) with IDA/Ghidra/Binary Ninja…

B2R2 is a fully managed binary analysis framework written in F#. It provides a rich set of algorithms, functions, and tools for reverse engineering,…

Blackbox Protobuf is a set of tools for working with encoded Protocol Buffers (protobuf) without the matching protobuf definition.

Set of scripts to deal with Cisco ASA firmware [pack/unpack etc.]

GarbageMan is a set of tools for analyzing .NET binaries through heap analysis.

IDA python scripts to decrypt strings from KPOT and set those as comments

A set of scripts that ease working with frida

A set of scripts for a radare-based malware code analysis workflow

UNIX-like reverse engineering framework and command-line toolset

GEF (GDB Enhanced Features) - a modern experience for GDB with advanced debugging capabilities for exploit devs & reverse engineers on Linux


Parse BIOS/Intel ME/UEFI firmware related structures: Volumes, FileSystems, Files, etc

Win32 and Kernel abusing techniques for pentesters



Build anti-detection Frida server from source. ~90 patches covering 16 detection vectors, weekly auto-builds with random names.

A fully functional DanderSpritz lab in 2 commands

Lifetime AMSI bypass