Stars
OSV-SCALIBR: A library for Software Composition Analysis
Pre-Built Vulnerable Environments Based on Docker-Compose
Lightweight fuzzing of a memory snapshot using KVM
Demo proof of concept for shadow regions, and implementation of HyperDeceit.
Visual Studio plugin to format document on save.
This is the Rust course used by the Android team at Google. It provides you the material to quickly teach Rust.
Cross-platform tool that allows browsing and extracting C and C++ type declarations from PDB files.
An easy-to-use library for emulating memory dumps. Useful for malware analysis (config extraction, unpacking) and dynamic analysis in general (sandboxing).
SimpleX - the first messaging network operating without user identifiers of any kind - 100% private by design! iOS, Android and desktop apps 📱!
Decompiler Explorer! Compare tools on the forefront of static analysis, now in your web browser!
This is a clone of an SVN repository at http://svn.code.sf.net/p/bochs/code/trunk. It had been cloned by http://svn2github.com/ , but the service was since closed. Please read a closing note on my …
Triton is a dynamic binary analysis library. Build your own program analysis tools, automate your reverse engineering, perform software verification or just emulate code.
mgayanov / wtf
Forked from 0vercl0k/wtfwtf is a distributed, code-coverage guided, customizable, cross-platform snapshot-based fuzzer designed for attacking user and / or kernel-mode targets running on Microsoft Windows.
This is a repo for small, useful scripts and extensions
Toy scripts for playing with WinDbg JS API
wtf is a distributed, code-coverage guided, customizable, cross-platform snapshot-based fuzzer designed for attacking user and / or kernel-mode targets running on Microsoft Windows and Linux user-m…
A collection of my Semgrep rules to facilitate vulnerability research.
Playing with the VMProtect software protection. Automatic deobfuscation of pure functions using symbolic execution and LLVM.
An IDA Python script to extract information from string constants.
reven2-scripts contains a set of REVEN scripts to automate timeless-analysis on REVEN traces.
Reverse Engineering Resources About All Platforms(Windows/Linux/macOS/Android/iOS/IoT) And Every Aspect! (More than 3500 open source tools and 2300 posts&videos)
awesome list of browser exploitation tutorials
weggli is a fast and robust semantic search tool for C and C++ codebases. It is designed to help security researchers identify interesting functionality in large codebases.
A curated list of bugbounty writeups (Bug type wise) , inspired from https://github.com/ngalongc/bug-bounty-reference
Set of tools to analyze Windows sandboxes for exposed attack surface.
rp++ is a fast C++ ROP gadget finder for PE/ELF/Mach-O x86/x64/ARM/ARM64 binaries.