
rizin
UNIX-like reverse engineering framework and command-line toolset.

UNIX-like reverse engineering framework and command-line toolset.

Open source Windows x64 PE packer and crypter. Compresses and encrypts executables with a custom virtual machine into a self extracting stub.

Windows memory hacking library

Multi-architecture assembler framework that converts assembly source into machine code for Arm, x86, MIPS, PowerPC, RISC-V, and more, with a…

:cherry_blossom: Interactive shellcoding environment to easily craft shellcodes

.NET, PE, & Raw Shellcode Packer/Loader Written in Nim

bespoke tooling for offensive security's Windows Usermode Exploit Dev course (OSED)

Simulates the Windows PE loader to identify DLL hijacking vulnerabilities, generates weaponized DLLs with shellcode payloads, and detects UAC…


Patching ROP-encoded shellcodes into PEs

Python AV Evasion Tools

A multi-arch assembly REPL and emulator for your command line.

Shellcode emulator written with Unicorn Framework With Process Dump Emulation Environment

Dynamically extracts fresh syscall stubs from ntdll.dll to evade signature-based detection, with a shellcode execution template for Nim-based…

Go package that aids in binary analysis and exploitation

C-shellcode to hex converter, handy tool for paste & execute shellcodes in IDA PRO, gdb, windbg, radare2, ollydbg, x64dbg, immunity debugger & 010…

Practical Windows malware development course: API hashing, DLL sideloading, shellcode execution, PE manipulation, payload hosting, and delivery labs.

WasmForge — compile Go and C# programs to single-binary, WASM-sandboxed native executables with polymorphic output.