This is your work, valued
samloader-rs. Download firmware for Samsung devices
★ 222pbtk. A toolset for reverse engineering and fuzzing Protobuf-based apps
★ 1.7kdiaphora-binja. Diaphora, the most advanced Free and Open Source program diffing tool. with bninja support
★ 16transsion-ota-prober. Pulls OTA links for some Transsion devices (Infinix, Tecno, Itel).
★ 4claude-code-local. Run Claude Code 100% on-device with local AI on Apple Silicon. MLX-native Anthropic-API server, 65 tok/s Qwen 3.5 122B, Llama 3.3 70B, Gemma 4 31B. Private, offline, airgap-ready. Built for NDA / legal / healthcare workflows.
★ 3kbloaty. Bloaty: a size profiler for binaries
★ 5.5kwiiMac. A Mac OS X bootloader for the Nintendo Wii.
★ 661Firmware_extractor. Extract given archive to images
★ 361art-kernel-toolkit. C
★ 62ANE. Training neural networks on Apple Neural Engine via reverse-engineered private APIs
★ 7.2kblaze. Blaze: a VT420 emulator
★ 37i8051. An emulator for the Intel 8051 (MCS-51) CPU written in Rust
★ 7payload_dumper. Android OTA payload dumper
★ 1.8k39C3-build-a-fake-phone-find-real-bugs. The companion repository for the 39C3 talk: Build a Fake Phone, Find Real Bugs: Qualcomm GPU Emulation and Fuzzing with LibAFL QEMU
★ 39pizero_bikecomputer. An open-source bike computer with GPS and ANT+ capabilities, based on the Raspberry Pi Zero (W, WH, 2 W) or the Compute Module Zero. It also includes offline maps and navigation.
★ 1.2kDeviceMenu. macOS menu bar app for interacting with iOS devices
★ 2mms. Modern Memory Safety in C/C++
★ 1.2kbanjo. Android Dex disassembler and Binary Ninja plugin
★ 69hexagon_fuzz. A fuzzing framework for Hexagon baseband firmware using QEMU system emulation.
★ 136disko. a minimalist disk usage analyzer for macOS
★ 116ghidra-hexagon-sleigh. A version-agnostic ghidra plugin for de-compiling Qualcomm Hexagon QDSP6
★ 39edl-ng. A modern, user-friendly tool for interacting with Qualcomm devices in Emergency Download (EDL) mode.
★ 108Aviary. A document uploader that automatically downloads and sends PDFs to your reMarkable cloud through a web interface or API. Supports PDF conversion, compression, and organized file management.
★ 56qdl.js. a library for interfacing with Qualcomm devices in QDL mode
★ 18Malimite. iOS and macOS Decompiler
★ 3.1kTrigon. Deterministic kernel exploit based on CVE-2023-32434.
★ 132payload-dumper-go. an android OTA payload dumper written in Go
★ 3.4kgallimaufry. Command Line Parsing Library for USB PCAP Files
★ 30spotify-player. A Spotify player in the terminal with full feature parity
★ 7kLabSync. An IDA plugin that can be used to partially synchronize IDBs between different users reversing the same binaries
★ 142vmlinux-to-elf. A tool to recover a fully analyzable .ELF from a raw kernel, through extracting the kernel symbol table (kallsyms)
★ 1.8kida2py. An intuitive query API for IDA Pro
★ 167sljit. Platform independent low-level JIT compiler
★ 1.1kimmich. High performance self-hosted photo and video management solution.
★ 109ktemplates. Hex Fiend templates, generally Apple related
★ 28VMG1312-B10A. Open source buildroot for VMG1312-B10A from ZyXeL
★ 15ghidra. Ghidra is a software reverse engineering (SRE) framework
★ 2instax-link-web. Vue
★ 54soundiizparse. Goes through Soundiiz's default results CSV and outputs the songs found and not found by Soundiiz into a *.txt file.
★ 2ipsw. iOS/macOS Research Swiss Army Knife
★ 3.6ksvdmap. Binary Ninja plugin to map in SVD peripherals and other information
★ 10i3pystatus. A complete replacement for i3status
★ 445bahn.guru. CURRENTLY ARCHIVED BECAUSE OF OUTDATED UPSTREAM API. FOR DETAILS SEE https://github.com/juliuste/bahn.guru/issues/63 | Deutsche Bahn ticket price calendar.
★ 446STRIDE. simple type recognition in decompiled executables
★ 121satellite-messenger. A free satellite messenger for iPhone 14
★ 80nyxstone. Nyxstone: assembly / disassembly library based on LLVM, implemented in C++ with Rust and Python bindings, maintained by emproof.com
★ 410RopView. A BinaryNinja plugin for contextual gadget analysis and semantic/hueristic based querying.
★ 71Kyoo. A portable and vast media library solution.
★ 2.5kaea1. AEA metadata dumper
★ 50papers_and_slides.
★ 277excelCPU. 16-bit CPU for Excel, and related files
★ 4.7kFindMyHistory. Track your Apple devices and look up their past location, battery levels, and more
★ 467roondisplay. Display using Raspberry Pi with Roon API
★ 2IOKernelRW. Insecurity as an IOService
★ 100sdm845-drivers. For development only! Not for end users
★ 29qualcomm_baseband_scripts. Collection of scripts for reversing Qualcomm Hexagon baseband / modem firmware
★ 191wa-tunnel. Tunneling Internet traffic over Whatsapp
★ 3.4kkfd. kfd, short for kernel file descriptor, is a project to read and write kernel memory on Apple devices.
★ 998xnu. C
★ 3.5kFairFree. jailbreak any ipa and run on apple silicon M1/M2 macOS without decrypted.
★ 369binder-trace. Binder Trace is a tool for intercepting and parsing Android Binder messages. Think of it as "Wireshark for Binder".
★ 766IdaClu. IdaClu is a version agnostic IDA Pro plugin for grouping similar functions. Pick an existing grouping algorithm or create your own.
★ 186lumina-binja-improved. IDA's Lumina feature, reimplemented for Binary Ninja, with new error handeling!
★ 41SonyHeadphonesClient. A {Windows, macOS, Linux} client recreating the functionality of the Sony Headphones app
★ 1.4kksuite. My BinaryNinja toolkit I use for iOS centric RE || Prerelease!
★ 47android-kernel-exploitation. Android Kernel Exploitation
★ 650binrec-tob. BinRec: Dynamic Binary Lifting and Recompilation
★ 148MediaInfo. MacOS Finder Extension to show information about media files (images, video and audio), PDF and Office files on the contextual menu.
★ 452ofrak. OFRAK: unpack, modify, and repack binaries.
★ 2.1kQCSuper. QCSuper is a tool communicating with Qualcomm-based phones and modems, allowing to capture raw 2G/3G/4G radio frames, among other things.
★ 1.6kqemu-t8030. iPhone 11 emulated on QEMU
★ 2.2kprotobuf-finder. IDA Pro plugin for reconstructing original .proto files from binary.
★ 304workflow_objc. Binary Ninja plugin & workflow to help analyze Objective-C code
★ 53scudo_research. Scudo useful files
★ 10proc_mem_ida_loader. A /proc/mem IDA loader to snapshot a running process
★ 168ghidra-plugin-hexagon. Hexagon decompiler for Ghidra
★ 54airplay2-receiver. AirPlay 2 Receiver - Python implementation
★ 2.3kusb-device-security. Collection of USB device(slave) related vulnerabilties
★ 10ObjectiveNinja. Binary Ninja plugin & workflow to help analyze Objective-C code
★ 83FirmWire. FirmWire is a full-system baseband firmware emulation platform for fuzzing, debugging, and root-cause analysis of smartphone baseband firmwares
★ 872lucid. An Interactive Hex-Rays Microcode Explorer
★ 674pixelbook-fedora. How to install Fedora on a Pixelbook with reasonable results
★ 70NtRays. Hex-Rays microcode plugin for automated simplification of Windows Kernel decompilation.
★ 675iomfb-exploit. Exploit for CVE-2021-30807
★ 134fontbuilder. C++
★ 1aSiagaming. My Chrome and Safari exploit code + write-up repo
★ 533LazyIDA. Make your IDA Lazy!
★ 1.4ktitanm. This repository contains the tools we used in our research on the Google Titan M chip
★ 210MuditaOS. Mobile operating system based on FreeRTOS™ optimized for E Ink displays - developed for Mudita Pure minimalist phone
★ 932minimp3. Minimalistic MP3 decoder single header library
★ 4qc_image_unpacker. Qualcomm image unpacker
★ 89heap_history_viewer. A program to draw rectangles from heap traces.
★ 135weggli. weggli is a fast and robust semantic search tool for C and C++ codebases. It is designed to help security researchers identify interesting functionality in large codebases.
★ 2.5kapple_u1. JavaScript
★ 42checkm30.
★ 101iris. Rust
★ 4git-split-diffs. Syntax highlighted side-by-side diffs in your terminal
★ 2.7kapplegpu. Apple G13 GPU architecture docs and tools
★ 677exploits. C
★ 2.5kbad64. Binja Arm64 Disassembler
★ 107preloader-m1. Preloader for Linux on M1
★ 98m1n1. A bootloader and experimentation playground for Apple Silicon
★ 4.2kidapython. A collection of IDAPython modules made with 💚 by Duo Labs
★ 297lumen. A private Lumina server for IDA Pro
★ 1.2klumina_server. Local server for IDA Lumina feature
★ 193arch-arm64. Aarch64 architecture plugin
★ 2AFLplusplus. The fuzzer afl++ is afl with community patches, qemu 5.1 upgrade, collision-free coverage, enhanced laf-intel & redqueen, AFLfast++ power schedules, MOpt mutators, unicorn_mode, and a lot more!
★ 6.7ksymgrate2-binja-plugin. A plugin for Binary Ninja to query the Symgrate2 database.
★ 14GrinningSoul. A userland iOS emulator for MacOS
★ 107ripr. Package Binary Code as a Python class using Binary Ninja and Unicorn Engine
★ 412arch-arm64. Aarch64 architecture plugin
★ 86IDBs. Analyses in IDA/Hex-Rays
★ 87ghidra_kernelcache. a Ghidra framework for iOS kernelcache reverse engineering
★ 370xray. Hexrays decompiler plugin that colorizes and filters the decompiler's output based on regular expressions
★ 141abyss. abyss - augmentation of Hexrays decompiler output
★ 346owl. An open Apple Wireless Direct Link (AWDL) implementation written in C
★ 1.5kVulnFanatic. A Binary Ninja plugin for vulnerability research.
★ 301DeepBinDiff. Official repository for DeepBinDiff
★ 251rbasefind. A firmware base address search tool.
★ 375isoalloc. A general purpose memory allocator that implements an isolation security strategy to mitigate memory safety issues while maintaining good performance
★ 389adb_shell. A Python implementation of ADB with shell and FileSync functionality.
★ 605VVVVVV. The source code to VVVVVV! http://thelettervsixtim.es/
★ 8kxmm7360-pci. PCI driver for Fibocom L850-GL modem based on Intel XMM7360 modem
★ 480bandwhich. Terminal bandwidth utilization tool
★ 12kxmm7360_usb. Kernel module for Fibocom L850-GL / Intel XMM7360 LTE modem
★ 71acorn. untethered+unsandboxed code execution in iOS 11
★ 190samsung-trustzone-research. Reverse-engineering tools and exploits for Samsung's implementation of TrustZone
★ 160xmm7360-usb-modeswitch. Tools for the Fibocom L850-GL / Intel XMM7360 LTE modem
★ 142genmc. Hex-Rays Microcode Viewer
★ 246qemu-hexagon. QEMU with support for QDSP6 user mode emulation
★ 34Karta. Karta - source code assisted fast binary matching plugin for IDA
★ 908ipwndfu. open-source jailbreaking tool for many iOS devices
★ 7.4kbinaryninja-api. Public API, examples, documentation and issues for Binary Ninja
★ 1.3kdeREferencing. IDA Pro plugin that implements more user-friendly register and stack views
★ 766diaphora_loader. A loader for IDA pro plugin diaphora
★ 1ghidra-scripts. ghidra stuff
★ 9make_c_program. A utility to create a simple C source file with a `main()` and open it in an editor.
★ 3aquaris-X2. Linux Kernel source code for the device bq Aquaris X2
★ 6mapguard. MapGuard is a library that enforces a security policy for mmap based page allocations.
★ 21kernel-hack-drill. Linux kernel exploitation experiments
★ 424ghidra_scripts. Scripts for the Ghidra software reverse engineering suite.
★ 1.2kghidra. Ghidra is a software reverse engineering (SRE) framework
★ 72kdiaphora. Diaphora, the most advanced Free and Open Source program diffing tool.
★ 4.3kIDArling. Collaborative Reverse Engineering plugin for IDA Pro & Hex-Rays
★ 669rview. A Gerrit client application for Android
★ 68fuji-cam-wifi-tool. Trying to reverse-engineer the wifi remote control protocol used by Fuji X series cameras
★ 250android_device_bq_sdm660-common. Shell
★ 4pigaios. A tool for matching and diffing source codes directly against binaries.
★ 650MetalGear. Fully annotated disassembly of the original Metal Gear game (MSX2, Konami, 1987, RC750)
★ 315xnu. ARM64 fixes for XNU
★ 7linux-kernel-exploitation. A collection of links related to Linux kernel security and exploitation
★ 6.6kmemctl. An iOS kernel introspection tool.
★ 272exploit_playground. Analysis of public exploits or my 1day exploits
★ 615android_device_bq_msm8953-common. Shell
★ 15android_device_bq_bardock. Aquaris X
★ 2droidimg. Android/Linux vmlinux loader
★ 358android_device_bq_bardockpro. Aquaris X Pro
★ 1shadow. jemalloc heap exploitation framework
★ 468ida_kernelcache. An IDA Toolkit for analyzing iOS kernelcaches.
★ 305darwin-xnu. Legacy mirror of Darwin Kernel. Replaced by https://github.com/apple-oss-distributions/xnu
★ 11k010Editor-stuff. A collection of 010 Editor specific stuff
★ 411linux_kernel_cves. Tracking CVEs for the linux Kernel
★ 754aquaris-X-Pro. Linux Kernel source code for the device bq Aquaris X Pro
★ 6anti-emulator. Android Anti-Emulator
★ 837android_kernel_bq_msm8937. C
★ 5ida-arm-system-highlight. IDA script for highlighting and decoding ARM system instructions
★ 407android_device_bq_tenshi. Makefile
★ 10aquaris-U-Plus. Linux Kernel source code for the device bq Aquaris U Plus
★ 5proprietary_vendor_bq. bq vendor files
★ 2FRIEND. Flexible Register/Instruction Extender aNd Documentation
★ 563aquaris-X5-plus. Linux Kernel source code for the device bq Aquaris X5 Plus
★ 10proprietary_vendor_bq. Makefile
★ 11dex-oracle. A pattern based Dalvik deobfuscator which uses limited execution to improve semantic analysis
★ 505Android_Kernel_CVE_POCs. A list of my CVE's with POCs
★ 682ht. The HT Editor: A file editor/viewer/analyzer for executables.
★ 431Signal-iOS. A private messenger for iOS.
★ 12kandroid-vts. Android Vulnerability Test Suite - In the spirit of open data collection, and with the help of the community, let's take a pulse on the state of Android security. NowSecure presents an on-device app to test for recent device vulnerabilities.
★ 1kunruu. Extracts HTC RUU's
★ 37Signal-Desktop. A private messenger for Windows, macOS, and Linux.
★ 16kCVE-2015-3636. PoC code for 32 bit Android OS
★ 134PoCForCVE-2015-1528. I'll submit the poc after blackhat
★ 117AndroidScrollingImageView. An Android view for displaying repeated continuous side scrolling images. This can be used to create a parallax animation effect.
★ 1.8kcm-cloud-generator. CyanogenMod Contributors Cloud generator script
★ 7AndroidSlides.
★ 173droidsec.github.io. The droidsec web site!
★ 171random-scripts. scripts I use from time to time
★ 236fuckitpy. The Python error steamroller.
★ 5.3kpalette-vs-the-dress. Java
★ 4UniversalAdbDriver. One size fits all Windows Drivers for Android Debug Bridge.
★ 2.3kandroid-completion. Bash completion for "adb" from the Google Android SDK
★ 261kernel. C
★ 25awesome. 😎 Awesome lists about all kinds of interesting topics
★ 491kgitfiti. abusing github commit history for the lulz
★ 8.4kCBTextFieldView. A basic pleasant looking textfield/label interface for OS X.
★ 77linux. Linux kernel source tree
★ 241kgoogle-io-2014. Demo for the Material Witness talk I gave at Google I/O.
★ 1.2kandroid_kernel_sony_msm8960t. C
★ 5ddi. ddi - Dynamic Dalvik Instrumentation Toolkit
★ 395HopperScripts. Python Scripts for use with Hopper Disassembler
★ 608rootadb. restart adbd with root privileges
★ 168