dondemeier's Stars
rizinorg/rz-ghidra
Deep ghidra decompiler and sleigh disassembler integration for rizin
viper-framework/viper-docker
blacktop/docker-cuckoo
Cuckoo Sandbox Dockerfile
viper-framework/viper
Binary analysis and management framework
mandiant/flare-vm
A collection of software installations scripts for Windows systems that allows you to easily setup and maintain a reverse engineering environment on a VM.
S2E/s2e
S2E: A platform for multi-path program analysis with selective symbolic execution.
alphaSeclab/awesome-reverse-engineering
Reverse Engineering Resources About All Platforms(Windows/Linux/macOS/Android/iOS/IoT) And Every Aspect! (More than 3500 open source tools and 2300 posts&videos)
rfarley3/CodeXt-ugly
The good, the bad, and the ugly of CodeXt mid-dissertation writing. Just something to get the code online.
PowerShellMafia/PowerSploit
PowerSploit - A PowerShell Post-Exploitation Framework
DarthTon/Blackbone
Windows memory hacking library
johnjohnsp1/MimkatzCollider
Mimikatz HashClash
googleprojectzero/sandbox-attacksurface-analysis-tools
Set of tools to analyze Windows sandboxes for exposed attack surface.
tyranid/DotNetToJScript
A tool to create a JScript file which loads a .NET v2 assembly from memory.
johnjohnsp1/Shellcode-Via-HTA
How To Execute Shellcode via HTA
bitsadmin/wesng
Windows Exploit Suggester - Next Generation
mattifestation/PSReflect
Easily define in-memory enums, structs, and Win32 functions in PowerShell
teamdfir/sift-saltstack
Salt States for Configuring the SIFT Workstation
teamdfir/sift
SIFT
fancycode/MemoryModule
Library to load a DLL from memory.
stephenfewer/ReflectiveDLLInjection
Reflective DLL injection is a library injection technique in which the concept of reflective programming is employed to perform the loading of a library from memory into a host process.
RPISEC/MBE
Course materials for Modern Binary Exploitation by RPISEC
hugsy/gef
GEF (GDB Enhanced Features) - a modern experience for GDB with advanced debugging capabilities for exploit devs & reverse engineers on Linux
pwndbg/pwndbg
Exploit Development and Reverse Engineering with GDB Made Easy
salesforce/hassh
HASSH is a network fingerprinting standard which can be used to identify specific Client and Server SSH implementations. The fingerprints can be easily stored, searched and shared in the form of a small MD5 fingerprint.
taviso/loadlibrary
Porting Windows Dynamic Link Libraries to Linux
nccgroup/OneLogicalMyth_Shell
A HTA shell to assist with breakout assessments.
salesforce/ja3
JA3 is a standard for creating SSL client fingerprints in an easy to produce and shareable way.
mitre-attack/bzar
A set of Zeek scripts to detect ATT&CK techniques.
PowerShell/PowerShell
PowerShell for every system!
RsaCtfTool/RsaCtfTool
RSA attack tool (mainly for ctf) - retrieve private key from weak public key and/or uncipher data