This is your work, valued
C/C++,Software Rerverse Engineer, Security Developer
ExAndroidNativeEmu. An improved version of AndroidNativeEmu,Allow running android elf on PC
★ 714elf-dump-fix. Utils use to dump android ELF from memory and do some fix including the ELF section header rebuilding
★ 485deobf. An arm32 ollvm like deofuscator,aim to remove obfuscation made by ollvm like compiler
★ 231IDAScripts. Common IDA scripts for effective Reverse Enginnering
★ 176ebpf-plugin. Python
★ 124360reverse. Reverse Engineering about 360 android app guard
★ 60sys-hacker. C
★ 21unshell. a my_dalvik plug-in for dex dumping from guarded app
★ 14my_aosp81. A modified android 8.1 for reverse engineer...
★ 11my_dalvik. Modified dalivik for Reverse Engineering
★ 6xploader. An Xposed plugin loader without rebooting the phone
★ 3vmmap-ios. a tools to simulate vmmap on ios
★ 3Patchs. strongR-frida
★ 2unicorn. Unicorn CPU emulator framework (ARM, AArch64, M68K, Mips, Sparc, X86)
★ 2aosp-docker. aosp build docker
★ 2bcc. BCC - Tools for BPF-based Linux IO analysis, networking, monitoring, and more
★ 1pinduoduo_backdoor. 拼多多apk内嵌提权代码,及动态下发dex分析
★ 1cracking4crawling. 一些爬虫相关的签名、验证码破解
★ 1xhsShield. C++
★ 1TikTok-Algorithm. Code for generating Tiktok X-Gorgon, X-Khronos and etc. parameters
★ 1opencyvis-phone. Kotlin
★ 379OpenJarvis. Personal AI, On Personal Devices
★ 8.1kida-structor. Structor is a Hex-Rays plugin that synthesizes C structures from raw pointer arithmetic.
★ 100jadx-ai-mcp. Plugin for JADX to integrate MCP server
★ 2.6khappy-llm. 📚 从零开始构建大模型
★ 32kAndroid-Native-Root-Detector. A tool to detect root on android
★ 1.3klzfse. LZFSE compression library and command line tool
★ 1.8kmcp-for-beginners. This open-source curriculum introduces the fundamentals of Model Context Protocol (MCP) through real-world, cross-language examples in .NET, Java, TypeScript, JavaScript, Rust and Python. Designed for developers, it focuses on practical techniques for building modular, scalable, and secure AI workflows from session setup to service orchestration.
★ 17kanbox. Anbox is a container-based approach to boot a full Android system on a regular GNU/Linux system
★ 9.1kfancyss. fancyss is a project providing tools to across the GFW on asuswrt/merlin based router.
★ 14kone-small-step. 这是一个简单的技术科普教程项目,主要聚焦于解释一些有趣的,前沿的技术概念和原理。每篇文章都力求在 5 分钟内阅读完成。
★ 7kja4. JA4+ is a suite of network fingerprinting standards
★ 2kja4tscan. JA4TScan is an active TCP server fingerprinting tool.
★ 118ShadowsocksX-NG. Next Generation of ShadowsocksX
★ 33kislet. An on-device confidential computing platform
★ 141shadowsocks-android. A shadowsocks client for Android
★ 37ksusfs4ksu. From: https://gitlab.com/simonpunk/susfs4ksu/
★ 23rootAVD. Script to root AVDs running with QEMU Emulator from Android Studio
★ 1.8kFirmware_extractor. Extract given archive to images
★ 361APatch. The patching of Android kernel and Android system
★ 7.7kValgrindHelperForAndroid. A easy way to use valgrind on Android device.
★ 58Simplifier. Efficient general mixed boolean-arithmetic (MBA) simplifier
★ 136OLLVM-9.0.1. OLLVM-9.0.1-NDK-21.3.6528147(ndk-r21d)
★ 161MobileAgent. Mobile-Agent: The Powerful GUI Agent Family
★ 9kOpenCoreAnalysisKit. android open core analysis kit
★ 84jynew. JinYongLegend-like RPG Game Framework with full Modding support and 10+ hours playable samples of game.
★ 8.9knmips. nanoMIPS IDA plugin
★ 69PicImpact. 自部署的摄影作品网站,支持多种功能特性。PicImpact,分享你和世界!
★ 1.3konyx. Open Source AI Platform - AI Chat with advanced features that works with every LLM
★ 31kd810. Python
★ 323lucid. An Interactive Hex-Rays Microcode Explorer
★ 674my-tv. 我的电视 电视直播软件,安装即可使用
★ 32kSsagePass. LLVM PASS by SsageParuders.Port to llvm_14.06 with New PM.Support for Android-ndk-r25(LTS).
★ 191avbroot. Tool for manipulating and re-signing Android A/B OTAs
★ 928ip-neigh-sdk30. Ip neigh for android using android NDK. Avoiding restriction of bind socket on Android apps targeting sdk 30
★ 38ZygiskNext. Standalone implementation of Zygisk
★ 10kGAMBA. Simplification of General Mixed Boolean-Arithmetic Expressions: GAMBA
★ 238FunctionInliner. An IDA plugin that eases reversing of binaries that have been code-size-optimized with function outlining
★ 228bindiff. Quickly find differences and similarities in disassembled code
★ 3.1kdiaphora. Diaphora, the most advanced Free and Open Source program diffing tool.
★ 4.3kfuse-overlayfs. FUSE implementation for overlayfs
★ 677magiskboot_build. unofficial magiskboot build system (and port) targeting multi-platform (does not require NDK)
★ 227PlayCover. Community fork of PlayCover
★ 12kKeyAttestation. Java
★ 2.1kgoomba. gooMBA is a Hex-Rays Decompiler plugin to simplify Mixed Boolean-Arithmetic (MBA) expressions
★ 682dumper. Dump L3 CDM from any Android device
★ 689android-key-attestation. Android Key Attestation validation library
★ 223jsmn. Jsmn is a world fastest JSON parser/tokenizer. This is the official repo replacing the old one at Bitbucket
★ 4.2kObfuscate. Guaranteed compile-time string literal obfuscation header-only library for C++14
★ 1.3kgzstat. A tool for analyzing gzip/DEFLATE bitstreams
★ 16widevinel3_Android_PoC. Widevine L3 PoC for Android Keybox Recovery, Content Key dump and Netflix Media Download
★ 106awesome-english-ebooks. 经济学人(含音频)、纽约客、卫报、连线、大西洋月刊等英语杂志免费下载,支持epub、mobi、pdf格式, 每周更新
★ 34kwidevine-l3-decryptor. JavaScript
★ 253awsome-magisk. 关于Magisk生态的研究
★ 163chibicc. A small C compiler
★ 12kbootimg-tools. Android boot.img creation and extraction tools [NOTE: This project is NO LONGER maintained]
★ 161website. AGE animation official website URL release page(AGE动漫官网网址发布页)
★ 9.4kkernel-assisted-superuser. C
★ 9diffusionbee-stable-diffusion-ui. Diffusion Bee is the easiest way to run Stable Diffusion locally on your M1 Mac. Comes with a one-click installer. No dependencies or technical knowledge needed.
★ 14kDragGAN. Official Code for DragGAN (SIGGRAPH 2023)
★ 36kChinese-LLaMA-Alpaca. 中文LLaMA&Alpaca大语言模型+本地CPU/GPU训练部署 (Chinese LLaMA & Alpaca LLMs)
★ 19kxVMP. C++
★ 683xnuspy_syscall_logger. Log all syscalls executed by a process (iOS / checkra1n / xnuspy)
★ 72xnuspy. an iOS kernel function hooking framework for checkra1n'able devices
★ 596Trace. A Chrome extension for web analytics
★ 198ailearning. AiLearning:数据分析+机器学习实战+线性代数+PyTorch+NLTK+TF2
★ 42kbundletool. Bundletool is a command-line tool to manipulate Android App Bundles
★ 4kcursor.
★ 33kpinduoduo_backdoor_detailed_report. Maybe the most detailed analysis of pdd backdoors
★ 1.8kEdgeGPT. Reverse engineered API of Microsoft's Bing Chat AI
★ 7.9kmemory-leak-detector. C
★ 1.2kProcMon-for-Linux. A Linux version of the Procmon Sysinternals tool
★ 4.7kAntiMSHookFunction. AntiMSHookFunction (make MSHookFunction doesn't work)
★ 127GradleWiki. 关于Gradle编译你需要知道的一切
★ 237plugins. Ghidra/IDA Pro plugins to load similarity result from binaryai.net
★ 93ExAndroidNativeEmu. An improved version of AndroidNativeEmu,Allow running android elf on PC
★ 714tanto. Tantō slices functions into more consumable chunks
★ 80yay. Yet another Yogurt - An AUR Helper written in Go
★ 14klimbo. XNU in Linux userspace
★ 186SimpleProtos. Header-only Google Protocol Buffers parser and serializer.
★ 29iOSFuckDenyAttach. tool that manually disable ptrace deny attach under kernel model
★ 87protobuf-finder. IDA Pro plugin for reconstructing original .proto files from binary.
★ 304unpacker. 基于ART主动调用的脱壳机
★ 801crypto_project. AES, CMAC, SHA256, HMAC and RSA written in C.
★ 64libtomcrypt. LibTomCrypt is a fairly comprehensive, modular and portable cryptographic toolkit that provides developers with a vast array of well known published block ciphers, one-way hash functions, chaining modes, pseudo-random number generators, public key cryptography and a plethora of other routines.
★ 1.8kfrida-iOS-syscall-tracer. alternative strace for iOS device(64bit)
★ 13iostrace. alternative strace for iOS device(64bit) on frida
★ 154TIDAL. Reverse engineering the TIDAL API. OAuth2 (RFC 8628 & RFC 6749) and (nearly) all endpoints
★ 128Tidal-Media-Downloader. Download 'TIDAL' Music On Windows/Linux/MacOs (PYTHON/C#)
★ 4.3ktiny-AES-c. Small portable AES128/192/256 in C
★ 5kJeanGrey. Tools to perform differential fault analysis attacks (DFA).
★ 370Stark. Repository of small utilities related to key recovery
★ 294ttexplore. TTexplore is a library that performs path exploration on binary code using symbolic execution
★ 85bitwuzla. Bitwuzla is a Satisfiability Modulo Theories (SMT) solver for the theories of fixed-size bit-vectors, floating-point arithmetic, arrays and uninterpreted functions and their combinations. Its name is derived from an Austrian dialect expression that can be translated as “someone who tinkers with bits”.
★ 366VMProtect-devirtualization. Playing with the VMProtect software protection. Automatic deobfuscation of pure functions using symbolic execution and LLVM.
★ 1.5kklee. KLEE Symbolic Execution Engine
★ 3kseninja. symbolic execution plugin for binary ninja
★ 358msynth. Code deobfuscation framework to simplify Mixed Boolean-Arithmetic (MBA) expressions
★ 380angr. A powerful and user-friendly binary analysis platform!
★ 9kbinaryninja-msp430. msp430 Architecture plugin for Binary Ninja
★ 33o-mvll. :electron: O-MVLL is a code obfuscation tool based on LLVM for native code (Android and iOS).
★ 1.1kGepetto. IDA plugin which queries language models to speed up reverse-engineering
★ 3.5kKyty. PS4 & PS5 emulator
★ 3kZ80. Z80 Architecture and BinaryViews for Z80 Files
★ 10FEX. A fast usermode x86 and x86-64 emulator for Arm64 Linux
★ 7.8kinfgen. Deflate disassember to convert a deflate, zlib, or gzip stream into a readable form.
★ 273arybo. Manipulation, canonicalization and identification of mixed boolean-arithmetic symbolic expressions
★ 342Tigress_protection. Playing with the Tigress software protection. Break some of its protections and solve their reverse engineering challenges. Automatic deobfuscation using symbolic execution, taint analysis and LLVM.
★ 909Triton. Triton is a dynamic binary analysis library. Build your own program analysis tools, automate your reverse engineering, perform software verification or just emulate code.
★ 4.2kMachium. a debugger for Apple Silicon
★ 52xnu. C
★ 3.5kdarwin-xnu. Legacy mirror of Darwin Kernel. Replaced by https://github.com/apple-oss-distributions/xnu
★ 11kvixl. C
★ 117bxxt. 📦 安卓 BOOT.IMG/RECOVERY.IMG/SELINUX/PROPERTY 解包打包实用工具,启动镜像编辑解包打包,selinux 修改,ro 属性修改。
★ 163binaryninja-api. Public API, examples, documentation and issues for Binary Ninja
★ 1.3kjslinux-mobile. Linux for iOS - a mobile version of a PC emulator written in Javascript, with a running, fully functional Linux system.
★ 127unwinddaemon. C++
★ 40stackplz. 基于eBPF的堆栈追踪工具
★ 1.4kunwindbcc. C
★ 12fadec. A fast and lightweight decoder for x86 and x86-64 and encoder for x86-64.
★ 229ebpf-beginners. The beginner's guide to eBPF
★ 1.7kdProtect. :electron: dProtect is a Proguard-based obfuscator for Java and Kotlin
★ 403vltrace. Tool tracing syscalls in a fast way using eBPF linux kernel feature
★ 100traceleft. eBPF based syscalls, files and network events tracing framework
★ 95antispy. AntiSpy is a free but powerful anti virus and rootkits toolkit.It offers you the ability with the highest privileges that can detect,analyze and restore various kernel modifications and hooks.With its assistance,you can easily spot and neutralize malwares hidden from normal detectors.
★ 1.1kandroid_device_xiaomi_dipper. Makefile
★ 49Xiaomi_Kernel_OpenSource. Xiaomi Mobile Phone Kernel OpenSource
★ 9.8kbcc. BCC - Tools for BPF-based Linux IO analysis, networking, monitoring, and more
★ 23kebpf-apps. 极客时间专栏《eBPF 核心技术与实战》案例
★ 382ios-app-signer. This is an app for OS X that can (re)sign apps and bundle them into ipa files that are ready to be installed on an iOS device.
★ 6.3keBPF_processor. An IDA processor for eBPF bytecode
★ 51PS5-IPV6-Kernel-Exploit. An experimental webkit-based kernel exploit (Arb. R/W) for the PS5 on <= 4.51FW
★ 925ehids-agent. A Linux Host-based Intrusion Detection System based on eBPF.
★ 456FartExt. 在FART的基础上进行优化。实现更深的主动调用。适用AOSP10
★ 210maya. Highly advanced Linux anti-exploitation and anti-tamper binary protector for ELF.
★ 161ManifestEditor. This is a tool used to modify Android Manifest binary file.
★ 417jdwp-shellifier. Python
★ 917And64InlineHook. Lightweight ARMv8-A(ARM64, AArch64, Little-Endian) Inline Hook Library for Android C/C++
★ 756docker-android. Android in docker solution with noVNC supported and video recording
★ 16kNeteaseCloudMusic-Audio-Recognize. JavaScript
★ 47redroid-doc. redroid (Remote-Android) is a multi-arch, GPU enabled, Android in Cloud solution. Track issues / docs here
★ 6.6kAUPK. C++
★ 235becoming-a-compiler-engineer. 编译器入门课程的配套教学资料
★ 659Spider_reverse. 爬虫js逆向学习
★ 10obfuscator.
★ 4.4kobfuscator. ollvm,base on llvm-clang 5.0.2, 6.0.1 , 7.0.1,8.0,9.0,9.0.1,10.x,11.x,12.x,13.x,14.x,swift-llvm-clang 5.0,swift-llvm-clang 5.5
★ 1.2klurk. A pretty (simple) alternative to strace.
★ 1.1kXboxDownload. Xbox Download Assistant (Xbox下载助手) — Supports download acceleration for Xbox, Microsoft Store, PlayStation, Nintendo Switch, EA App, Battle.net, Epic Games, Ubisoft Connect, Riot Games, and Rockstar Games, and fixes access issues for Steam Store & Community and GitHub.
★ 3.8kXXTouchNG. Next generation XXTouch for iOS 13 and above. System-wide iOS Automation Toolkit.
★ 226llvm. An LLVM clone modified for use in RetDec and associated tools.
★ 19libsodium. A modern, portable, easy to use crypto library.
★ 14kopengrok. OpenGrok is a fast and usable source code search and cross reference engine, written in Java
★ 4.9koaknut. Yet another AArch64 emitter
★ 67msvc-wine. Scripts for setting up and running MSVC in Wine on Linux
★ 1.3kdx-signer. 顶象apk签名&多渠道工具
★ 106Riru-MomoHider. A Riru module trying to make Magisk more hidden.
★ 722mold. mold: A Modern Linker 🦠
★ 17kvandalir. LLVM
★ 27adeb. A debian-based shell environment designed for Android and adb
★ 337ebpf-examples. Python
★ 61BlackDex. BlackDex is an Android unpack(dexdump) tool, it supports Android 5.0~12 and need not rely to any environment. BlackDex can run on any Android mobile phone or emulator, you can unpack APK File in several seconds.
★ 6.4keadb. eBPF Android Debug Bridge
★ 564dexmaker. A utility for doing compile or runtime code generation targeting Android's Dalvik VM
★ 2kebpf-slide. Collection of Linux eBPF slides/documents.
★ 981Dreamland. A third-party Xposed framework implementation which supports Android 5.0~14.
★ 919Learn-LLVM-12. 《Learn LLVM 12》的非专业个人翻译
★ 598LLVM-Techniques-Tips-and-Best-Practies. 《LLVM Techniques, Tips, and Best Practices》的非专业个人翻译
★ 135mir. A lightweight JIT compiler based on MIR (Medium Internal Representation) and C11 JIT compiler and interpreter based on MIR
★ 2.6kdynamorio. Dynamic Instrumentation Tool Platform
★ 3.1kz3. The Z3 Theorem Prover
★ 13kudbserver. Unicorn Emulator Debug Server - Written in Rust, with bindings for C, Go, Java and Python
★ 434DetectMagiskHide. A way to detect magisk hide using an Android feature
★ 220Magisk. The Magic Mask for Android
★ 62kMagiskDetector. C
★ 783HowToCook. Programmer's guide about how to cook at home.
★ 101kAddSecurityExceptionAndroid. Shell
★ 693BinAbsInspector. BinAbsInspector: Vulnerability Scanner for Binaries
★ 1.7kFrida-Seccomp. 一个Android通用svc跟踪以及hook方案——Frida-Seccomp
★ 659delta. A syntax-highlighting pager for git, diff, grep, rg --json, and blame output
★ 32kxHook. 🔥 A PLT hook library for Android native ELF.
★ 4.3kobjection. 📱 objection - runtime mobile exploration
★ 9.3kabi-aa. Application Binary Interface for the Arm® Architecture
★ 1.2kptrace-redirect. Example code for changing syscall arguments using ptrace
★ 48android-prepare-vendor. Set of scripts to automate AOSP compatible vendor blobs generation from factory images
★ 358obpo-plugin. An OLLVM-CFF Deobfuscation Plugin
★ 628simple-pointer-analysis. Pointer analysis prototype (currently including anderson, steensgard).
★ 17andersen. Andersen's inclusion-based pointer analysis re-implementation in LLVM
★ 236Pluto. Obfuscator based on LLVM 14.0.6
★ 908sleigh. Unofficial CMake build for Ghidra's C++ SLEIGH code
★ 186maat. Open-source symbolic execution framework: https://maat.re
★ 650CSCD70. CSCD70 Compiler Optimization
★ 264qemu. Customized version of QEMU 2.4.0 exposing the TCG frontend and the helpers
★ 20revng. revng: the core repository of the rev.ng project
★ 1.7kFartExt. 在FART的基础上进行优化。实现更深的主动调用。适用AOSP10
★ 269symqemu. SymQEMU: Compilation-based symbolic execution for binaries
★ 375py2hs. A complementary resource that helps python programmers to learn Haskell
★ 43frida_hook_libart. Frida hook some jni functions
★ 1.7kstrongR-frida-android. An anti detection version frida-server for android.
★ 1.7kandroid-inject-custom. Example showing how to use Frida for standalone injection of a custom payload
★ 166frida-detection. A couple of methods for detecting Frida on Android.
★ 496