Ghidra is a software reverse engineering (SRE) framework
Support
Quality
Security
License
Reuse
🔍 A Hex Editor for Reverse Engineers, Programmers and people who value their retinas when working at 3 AM.
Support
Quality
Security
License
Reuse
UNIX-like reverse engineering framework and command-line toolset
Support
Quality
Security
License
Reuse
.NET Decompiler with support for PDB generation, ReadyToRun, Metadata (&more) - cross-platform!
Support
Quality
Security
License
Reuse
Linux shell for iOS
Support
Quality
Security
License
Reuse
A Java 8+ Jar & Android APK Reverse Engineering Suite (Decompiler, Editor, Debugger & More)
Support
Quality
Security
License
Reuse
Free and Open Source Reverse Engineering Platform powered by rizin
Support
Quality
Security
License
Reuse
Clone this repo to build Frida
Support
Quality
Security
License
Reuse
Leaked Mirai Source Code for Research/IoC Development Purposes
Support
Quality
Security
License
Reuse
.NET deobfuscator and unpacker.
Support
Quality
Security
License
Reuse
Unity il2cpp reverse engineer
Support
Quality
Security
License
Reuse
OpenArk is an open source anti-rookit(ARK) tool for Windows.
Support
Quality
Security
License
Reuse
Cuckoo Sandbox is an automated dynamic malware analysis system
Support
Quality
Security
License
Reuse
Program for determining types of files for Windows, Linux and MacOS.
Support
Quality
Security
License
Reuse
Public malware techniques used in the wild: Virtual Machine, Emulation, Debuggers, Sandbox detection.
Support
Quality
Security
License
Reuse
Reverse engineering and pentesting for Android applications
Support
Quality
Security
License
Reuse
Android virtual machine and deobfuscator
Support
Quality
Security
License
Reuse
Decompilation of The Legend of Zelda: Ocarina of Time
Support
Quality
Security
License
Reuse
LIEF - Library to Instrument Executable Formats
Support
Quality
Security
License
Reuse
QEMU Interactive Runtime Analyser
Support
Quality
Security
License
Reuse
t
the-backdoor-factoryby secretsquirrel
Python 3144 Version:Current License: Permissive (BSD-3-Clause)
Patch PE, ELF, Mach-O binaries with shellcode new version in development, available only to sponsors
Support
Quality
Security
License
Reuse
Reverse engineering framework in Python
Support
Quality
Security
License
Reuse
The FLARE team's open-source tool to identify capabilities in executable files.
Support
Quality
Security
License
Reuse
Plasma is an interactive disassembler for x86/ARM/MIPS. It can generates indented pseudo-code with colored syntax.
Support
Quality
Security
License
Reuse
Unofficial mirror of FernFlower Java decompiler (All pulls should be submitted upstream)
Support
Quality
Security
License
Reuse
Triton is a dynamic binary analysis library. Build your own program analysis tools, automate your reverse engineering, perform software verification or just emulate code.
Support
Quality
Security
License
Reuse
pull decrypted ipa from jailbreak device
Support
Quality
Security
License
Reuse
Support
Quality
Security
License
Reuse
Dumps decrypted mach-o files from encrypted iPhone applications from memory to disk. This tool is necessary for security researchers to be able to look under the hood of encryption.
Support
Quality
Security
License
Reuse
BinNavi is a binary analysis IDE that allows to inspect, navigate, edit and annotate control flow graphs and call graphs of disassembled code.
Support
Quality
Security
License
Reuse
Decompilation of 3D Pinball for Windows – Space Cadet
Support
Quality
Security
License
Reuse
Pafish is a testing tool that uses different techniques to detect virtual machines and malware analysis environments in the same way that malware families do
Support
Quality
Security
License
Reuse
The Iceman fork of Proxmark3 / RFID / NFC reader, writer, sniffer and emulator
Support
Quality
Security
License
Reuse
Open-source, cross platform Qt based IDE for reverse-engineering Android application packages.
Support
Quality
Security
License
Reuse
Reverse engineering SARS-CoV-2
Support
Quality
Security
License
Reuse
Dynamic Instrumentation Tool Platform
Support
Quality
Security
License
Reuse
MachOView fork
Support
Quality
Security
License
Reuse
Powerful automated tool for reverse engineering Unity IL2CPP binaries
Support
Quality
Security
License
Reuse
Reverse Engineers' Hex Editor
Support
Quality
Security
License
Reuse
一行代码检测XP/调试/多开/模拟器/root
Support
Quality
Security
License
Reuse
C++ python bytecode disassembler and decompiler
Support
Quality
Security
License
Reuse
UNIX-like reverse engineering framework and command-line toolset.
Support
Quality
Security
License
Reuse
reverse engineering tools for android(android 逆向工程工具集)
Support
Quality
Security
License
Reuse
A Coverage Explorer for Reverse Engineers
Support
Quality
Security
License
Reuse
Android Reverse-Engineering Workbench for VS Code
Support
Quality
Security
License
Reuse
PyInstaller Extractor
Support
Quality
Security
License
Reuse
Reko is a binary decompiler.
Support
Quality
Security
License
Reuse
DIE engine
Support
Quality
Security
License
Reuse
The FLARE team's open-source tool to identify capabilities in executable files.
Support
Quality
Security
License
Reuse
ret-sync is a set of plugins that helps to synchronize a debugging session (WinDbg/GDB/LLDB/OllyDbg2/x64dbg) with IDA/Ghidra/Binary Ninja disassemblers.
Support
Quality
Security
License
Reuse
g
ghidraby NationalSecurityAgency
Ghidra is a software reverse engineering (SRE) framework
Java 40166Updated: 1 y ago License: Permissive (Apache-2.0)
Support
Quality
Security
License
Reuse
I
ImHexby WerWolv
🔍 A Hex Editor for Reverse Engineers, Programmers and people who value their retinas when working at 3 AM.
C++ 28827Updated: 1 y ago License: Strong Copyleft (GPL-2.0)
Support
Quality
Security
License
Reuse
r
radare2by radareorg
UNIX-like reverse engineering framework and command-line toolset
C 18192Updated: 1 y ago License: Weak Copyleft (LGPL-3.0)
Support
Quality
Security
License
Reuse
I
ILSpyby icsharpcode
.NET Decompiler with support for PDB generation, ReadyToRun, Metadata (&more) - cross-platform!
C# 17990Updated: 1 y ago License: No License (No License)
Support
Quality
Security
License
Reuse
i
Support
Quality
Security
License
Reuse
b
bytecode-viewerby Konloch
A Java 8+ Jar & Android APK Reverse Engineering Suite (Decompiler, Editor, Debugger & More)
Java 13773Updated: 1 y ago License: Strong Copyleft (GPL-3.0)
Support
Quality
Security
License
Reuse
c
cutterby rizinorg
Free and Open Source Reverse Engineering Platform powered by rizin
C++ 13571Updated: 1 y ago License: Strong Copyleft (GPL-3.0)
Support
Quality
Security
License
Reuse
f
fridaby frida
Clone this repo to build Frida
Python 9541Updated: 3 y ago License: Proprietary (Proprietary)
Support
Quality
Security
License
Reuse
M
Mirai-Source-Codeby jgamblin
Leaked Mirai Source Code for Research/IoC Development Purposes
C 7806Updated: 1 y ago License: Strong Copyleft (GPL-3.0)
Support
Quality
Security
License
Reuse
d
de4dotby de4dot
.NET deobfuscator and unpacker.
C# 6350Updated: 1 y ago License: Strong Copyleft (GPL-3.0)
Support
Quality
Security
License
Reuse
I
Il2CppDumperby Perfare
Unity il2cpp reverse engineer
C# 5334Updated: 1 y ago License: Permissive (MIT)
Support
Quality
Security
License
Reuse
O
OpenArkby BlackINT3
OpenArk is an open source anti-rookit(ARK) tool for Windows.
C++ 5198Updated: 1 y ago License: Weak Copyleft (LGPL-2.1)
Support
Quality
Security
License
Reuse
c
cuckooby cuckoosandbox
Cuckoo Sandbox is an automated dynamic malware analysis system
JavaScript 5187Updated: 2 y ago License: Proprietary (Proprietary)
Support
Quality
Security
License
Reuse
D
Detect-It-Easyby horsicq
Program for determining types of files for Windows, Linux and MacOS.
JavaScript 5118Updated: 1 y ago License: Permissive (MIT)
Support
Quality
Security
License
Reuse
a
al-khaserby LordNoteworthy
Public malware techniques used in the wild: Virtual Machine, Emulation, Debuggers, Sandbox detection.
C++ 4850Updated: 1 y ago License: Strong Copyleft (GPL-2.0)
Support
Quality
Security
License
Reuse
a
androguardby androguard
Reverse engineering and pentesting for Android applications
Python 4481Updated: 1 y ago License: Permissive (Apache-2.0)
Support
Quality
Security
License
Reuse
s
simplifyby CalebFenton
Android virtual machine and deobfuscator
Java 4179Updated: 1 y ago License: Proprietary (Proprietary)
Support
Quality
Security
License
Reuse
o
ootby zeldaret
Decompilation of The Legend of Zelda: Ocarina of Time
C 4089Updated: 2 y ago License: No License (No License)
Support
Quality
Security
License
Reuse
L
LIEFby lief-project
LIEF - Library to Instrument Executable Formats
C++ 3738Updated: 1 y ago License: Permissive (Apache-2.0)
Support
Quality
Security
License
Reuse
q
Support
Quality
Security
License
Reuse
t
the-backdoor-factoryby secretsquirrel
Patch PE, ELF, Mach-O binaries with shellcode new version in development, available only to sponsors
Python 3144Updated: 1 y ago License: Permissive (BSD-3-Clause)
Support
Quality
Security
License
Reuse
m
miasmby cea-sec
Reverse engineering framework in Python
Python 3079Updated: 1 y ago License: Strong Copyleft (GPL-2.0)
Support
Quality
Security
License
Reuse
c
capaby mandiant
The FLARE team's open-source tool to identify capabilities in executable files.
Python 3068Updated: 1 y ago License: Permissive (Apache-2.0)
Support
Quality
Security
License
Reuse
p
plasmaby plasma-disassembler
Plasma is an interactive disassembler for x86/ARM/MIPS. It can generates indented pseudo-code with colored syntax.
Python 3008Updated: 2 y ago License: Strong Copyleft (GPL-3.0)
Support
Quality
Security
License
Reuse
f
fernflowerby fesh0r
Unofficial mirror of FernFlower Java decompiler (All pulls should be submitted upstream)
Java 2915Updated: 1 y ago License: No License (No License)
Support
Quality
Security
License
Reuse
T
Tritonby JonathanSalwan
Triton is a dynamic binary analysis library. Build your own program analysis tools, automate your reverse engineering, perform software verification or just emulate code.
C++ 2881Updated: 1 y ago License: Permissive (Apache-2.0)
Support
Quality
Security
License
Reuse
f
frida-ios-dumpby AloneMonkey
pull decrypted ipa from jailbreak device
JavaScript 2846Updated: 1 y ago License: Permissive (MIT)
Support
Quality
Security
License
Reuse
f
flare-vmby fireeye
PowerShell 2844Updated: 3 y ago License: Permissive (Apache-2.0)
Support
Quality
Security
License
Reuse
d
dumpdecryptedby stefanesser
Dumps decrypted mach-o files from encrypted iPhone applications from memory to disk. This tool is necessary for security researchers to be able to look under the hood of encryption.
C 2783Updated: 2 y ago License: No License (No License)
Support
Quality
Security
License
Reuse
b
binnaviby google
BinNavi is a binary analysis IDE that allows to inspect, navigate, edit and annotate control flow graphs and call graphs of disassembled code.
Java 2742Updated: 3 y ago License: Permissive (Apache-2.0)
Support
Quality
Security
License
Reuse
S
SpaceCadetPinballby k4zmu2a
Decompilation of 3D Pinball for Windows – Space Cadet
C++ 2738Updated: 1 y ago License: Permissive (MIT)
Support
Quality
Security
License
Reuse
p
pafishby a0rtega
Pafish is a testing tool that uses different techniques to detect virtual machines and malware analysis environments in the same way that malware families do
C 2730Updated: 1 y ago License: Strong Copyleft (GPL-3.0)
Support
Quality
Security
License
Reuse
p
proxmark3by RfidResearchGroup
The Iceman fork of Proxmark3 / RFID / NFC reader, writer, sniffer and emulator
C 2699Updated: 1 y ago License: Strong Copyleft (GPL-3.0)
Support
Quality
Security
License
Reuse
a
apkstudioby vaibhavpandeyvpz
Open-source, cross platform Qt based IDE for reverse-engineering Android application packages.
C++ 2559Updated: 2 y ago License: Weak Copyleft (LGPL-3.0)
Support
Quality
Security
License
Reuse
c
coronaby geohot
Reverse engineering SARS-CoV-2
Python 2375Updated: 2 y ago License: No License (No License)
Support
Quality
Security
License
Reuse
d
dynamorioby DynamoRIO
Dynamic Instrumentation Tool Platform
C 2300Updated: 1 y ago License: Proprietary (Proprietary)
Support
Quality
Security
License
Reuse
M
Support
Quality
Security
License
Reuse
I
Il2CppInspectorby djkaty
Powerful automated tool for reverse engineering Unity IL2CPP binaries
C 2224Updated: 1 y ago License: Strong Copyleft (AGPL-3.0)
Support
Quality
Security
License
Reuse
r
rehexby solemnwarning
Reverse Engineers' Hex Editor
C++ 2133Updated: 1 y ago License: Strong Copyleft (GPL-2.0)
Support
Quality
Security
License
Reuse
E
EasyProtectorby lamster2018
一行代码检测XP/调试/多开/模拟器/root
Java 2047Updated: 1 y ago License: Permissive (Apache-2.0)
Support
Quality
Security
License
Reuse
p
pycdcby zrax
C++ python bytecode disassembler and decompiler
C++ 1987Updated: 1 y ago License: Strong Copyleft (GPL-3.0)
Support
Quality
Security
License
Reuse
r
rizinby rizinorg
UNIX-like reverse engineering framework and command-line toolset.
C 1943Updated: 1 y ago License: Weak Copyleft (LGPL-3.0)
Support
Quality
Security
License
Reuse
d
droidReverseby Juude
reverse engineering tools for android(android 逆向工程工具集)
Shell 1904Updated: 2 y ago License: No License (No License)
Support
Quality
Security
License
Reuse
l
lighthouseby gaasedelen
A Coverage Explorer for Reverse Engineers
Python 1892Updated: 2 y ago License: Permissive (MIT)
Support
Quality
Security
License
Reuse
A
APKLabby APKLab
Android Reverse-Engineering Workbench for VS Code
TypeScript 1835Updated: 1 y ago License: Strong Copyleft (AGPL-3.0)
Support
Quality
Security
License
Reuse
p
pyinstxtractorby extremecoders-re
PyInstaller Extractor
Python 1750Updated: 1 y ago License: Strong Copyleft (GPL-3.0)
Support
Quality
Security
License
Reuse
r
Support
Quality
Security
License
Reuse
D
Support
Quality
Security
License
Reuse
c
capaby fireeye
The FLARE team's open-source tool to identify capabilities in executable files.
Python 1645Updated: 3 y ago License: Permissive (Apache-2.0)
Support
Quality
Security
License
Reuse
r
ret-syncby bootleg
ret-sync is a set of plugins that helps to synchronize a debugging session (WinDbg/GDB/LLDB/OllyDbg2/x64dbg) with IDA/Ghidra/Binary Ninja disassemblers.
C 1636Updated: 1 y ago License: Strong Copyleft (GPL-3.0)
Support
Quality
Security
License
Reuse