
haruspex
Vulnerability research assistant that extracts pseudocode from the IDA Hex-Rays decompiler.

Vulnerability research assistant that extracts pseudocode from the IDA Hex-Rays decompiler.

StaCoAn is a crossplatform tool which aids developers, bugbounty hunters and ethical hackers performing static code analysis on mobile applications.

Semgrep rules that flag header-trust auth bypass patterns (CVE-2025-29927 class). Companion to bk-security.github.io.

Curated Ghidra scripts to automate reverse engineering and vulnerability analysis: locate insecure functions, extract decompiler pseudocode, fix…

Static code analysis plugin for Android project. (Checkstyle, PMD)

Batch-decompile binaries with Ghidra from the command line, generating per-function C files, callgraphs, BSim signatures, and optional SAST results…


Easy setup of static analysis tools for Android and Java projects.

Web-based Source Code Vulnerability Scanner

CodeQL + DTrace = Memory Disclosure Vulnerabilities in XNU