Ghidra is a software reverse engineering (SRE) framework
Support
Quality
Security
License
Reuse
🔍 A Hex Editor for Reverse Engineers, Programmers and people who value their retinas when working at 3 AM.
Support
Quality
Security
License
Reuse
UNIX-like reverse engineering framework and command-line toolset
Support
Quality
Security
License
Reuse
.NET Decompiler with support for PDB generation, ReadyToRun, Metadata (&more) - cross-platform!
Support
Quality
Security
License
Reuse
Linux shell for iOS
Support
Quality
Security
License
Reuse
A Java 8+ Jar & Android APK Reverse Engineering Suite (Decompiler, Editor, Debugger & More)
Support
Quality
Security
License
Reuse
Free and Open Source Reverse Engineering Platform powered by rizin
Support
Quality
Security
License
Reuse
Clone this repo to build Frida
Support
Quality
Security
License
Reuse
Leaked Mirai Source Code for Research/IoC Development Purposes
Support
Quality
Security
License
Reuse
.NET deobfuscator and unpacker.
Support
Quality
Security
License
Reuse
Unity il2cpp reverse engineer
Support
Quality
Security
License
Reuse
OpenArk is an open source anti-rookit(ARK) tool for Windows.
Support
Quality
Security
License
Reuse
Cuckoo Sandbox is an automated dynamic malware analysis system
Support
Quality
Security
License
Reuse
Program for determining types of files for Windows, Linux and MacOS.
Support
Quality
Security
License
Reuse
Public malware techniques used in the wild: Virtual Machine, Emulation, Debuggers, Sandbox detection.
Support
Quality
Security
License
Reuse
Reverse engineering and pentesting for Android applications
Support
Quality
Security
License
Reuse
Android virtual machine and deobfuscator
Support
Quality
Security
License
Reuse
Decompilation of The Legend of Zelda: Ocarina of Time
Support
Quality
Security
License
Reuse
LIEF - Library to Instrument Executable Formats
Support
Quality
Security
License
Reuse
QEMU Interactive Runtime Analyser
Support
Quality
Security
License
Reuse
t
the-backdoor-factoryby secretsquirrel
Python 
3144
Version:Current
License: Permissive (BSD-3-Clause)
Patch PE, ELF, Mach-O binaries with shellcode new version in development, available only to sponsors
Support
Quality
Security
License
Reuse
Reverse engineering framework in Python
Support
Quality
Security
License
Reuse
The FLARE team's open-source tool to identify capabilities in executable files.
Support
Quality
Security
License
Reuse
Plasma is an interactive disassembler for x86/ARM/MIPS. It can generates indented pseudo-code with colored syntax.
Support
Quality
Security
License
Reuse
Unofficial mirror of FernFlower Java decompiler (All pulls should be submitted upstream)
Support
Quality
Security
License
Reuse
Triton is a dynamic binary analysis library. Build your own program analysis tools, automate your reverse engineering, perform software verification or just emulate code.
Support
Quality
Security
License
Reuse
pull decrypted ipa from jailbreak device
Support
Quality
Security
License
Reuse
Support
Quality
Security
License
Reuse
Dumps decrypted mach-o files from encrypted iPhone applications from memory to disk. This tool is necessary for security researchers to be able to look under the hood of encryption.
Support
Quality
Security
License
Reuse
BinNavi is a binary analysis IDE that allows to inspect, navigate, edit and annotate control flow graphs and call graphs of disassembled code.
Support
Quality
Security
License
Reuse
Decompilation of 3D Pinball for Windows – Space Cadet
Support
Quality
Security
License
Reuse
Pafish is a testing tool that uses different techniques to detect virtual machines and malware analysis environments in the same way that malware families do
Support
Quality
Security
License
Reuse
The Iceman fork of Proxmark3 / RFID / NFC reader, writer, sniffer and emulator
Support
Quality
Security
License
Reuse
Open-source, cross platform Qt based IDE for reverse-engineering Android application packages.
Support
Quality
Security
License
Reuse
Reverse engineering SARS-CoV-2
Support
Quality
Security
License
Reuse
Dynamic Instrumentation Tool Platform
Support
Quality
Security
License
Reuse
MachOView fork
Support
Quality
Security
License
Reuse
Powerful automated tool for reverse engineering Unity IL2CPP binaries
Support
Quality
Security
License
Reuse
Reverse Engineers' Hex Editor
Support
Quality
Security
License
Reuse
一行代码检测XP/调试/多开/模拟器/root
Support
Quality
Security
License
Reuse
C++ python bytecode disassembler and decompiler
Support
Quality
Security
License
Reuse
UNIX-like reverse engineering framework and command-line toolset.
Support
Quality
Security
License
Reuse
reverse engineering tools for android(android 逆向工程工具集)
Support
Quality
Security
License
Reuse
A Coverage Explorer for Reverse Engineers
Support
Quality
Security
License
Reuse
Android Reverse-Engineering Workbench for VS Code
Support
Quality
Security
License
Reuse
PyInstaller Extractor
Support
Quality
Security
License
Reuse
Reko is a binary decompiler.
Support
Quality
Security
License
Reuse
DIE engine
Support
Quality
Security
License
Reuse
The FLARE team's open-source tool to identify capabilities in executable files.
Support
Quality
Security
License
Reuse
ret-sync is a set of plugins that helps to synchronize a debugging session (WinDbg/GDB/LLDB/OllyDbg2/x64dbg) with IDA/Ghidra/Binary Ninja disassemblers.
Support
Quality
Security
License
Reuse
g
ghidraby NationalSecurityAgency
Ghidra is a software reverse engineering (SRE) framework
Java
40166
Updated: 2 y ago
License: Permissive (Apache-2.0)
Support
Quality
Security
License
Reuse
I
ImHexby WerWolv
🔍 A Hex Editor for Reverse Engineers, Programmers and people who value their retinas when working at 3 AM.
C++
28827
Updated: 2 y ago
License: Strong Copyleft (GPL-2.0)
Support
Quality
Security
License
Reuse
r
radare2by radareorg
UNIX-like reverse engineering framework and command-line toolset
C
18192
Updated: 2 y ago
License: Weak Copyleft (LGPL-3.0)
Support
Quality
Security
License
Reuse
I
ILSpyby icsharpcode
.NET Decompiler with support for PDB generation, ReadyToRun, Metadata (&more) - cross-platform!
C#
17990
Updated: 2 y ago
License: No License (No License)
Support
Quality
Security
License
Reuse
i
Support
Quality
Security
License
Reuse
b
bytecode-viewerby Konloch
A Java 8+ Jar & Android APK Reverse Engineering Suite (Decompiler, Editor, Debugger & More)
Java
13773
Updated: 2 y ago
License: Strong Copyleft (GPL-3.0)
Support
Quality
Security
License
Reuse
c
cutterby rizinorg
Free and Open Source Reverse Engineering Platform powered by rizin
C++
13571
Updated: 2 y ago
License: Strong Copyleft (GPL-3.0)
Support
Quality
Security
License
Reuse
f
fridaby frida
Clone this repo to build Frida
Python
9541
Updated: 3 y ago
License: Proprietary (Proprietary)
Support
Quality
Security
License
Reuse
M
Mirai-Source-Codeby jgamblin
Leaked Mirai Source Code for Research/IoC Development Purposes
C
7806
Updated: 2 y ago
License: Strong Copyleft (GPL-3.0)
Support
Quality
Security
License
Reuse
d
de4dotby de4dot
.NET deobfuscator and unpacker.
C#
6350
Updated: 2 y ago
License: Strong Copyleft (GPL-3.0)
Support
Quality
Security
License
Reuse
I
Il2CppDumperby Perfare
Unity il2cpp reverse engineer
C#
5334
Updated: 2 y ago
License: Permissive (MIT)
Support
Quality
Security
License
Reuse
O
OpenArkby BlackINT3
OpenArk is an open source anti-rookit(ARK) tool for Windows.
C++
5198
Updated: 2 y ago
License: Weak Copyleft (LGPL-2.1)
Support
Quality
Security
License
Reuse
c
cuckooby cuckoosandbox
Cuckoo Sandbox is an automated dynamic malware analysis system
JavaScript
5187
Updated: 2 y ago
License: Proprietary (Proprietary)
Support
Quality
Security
License
Reuse
D
Detect-It-Easyby horsicq
Program for determining types of files for Windows, Linux and MacOS.
JavaScript
5118
Updated: 2 y ago
License: Permissive (MIT)
Support
Quality
Security
License
Reuse
a
al-khaserby LordNoteworthy
Public malware techniques used in the wild: Virtual Machine, Emulation, Debuggers, Sandbox detection.
C++
4850
Updated: 2 y ago
License: Strong Copyleft (GPL-2.0)
Support
Quality
Security
License
Reuse
a
androguardby androguard
Reverse engineering and pentesting for Android applications
Python
4481
Updated: 2 y ago
License: Permissive (Apache-2.0)
Support
Quality
Security
License
Reuse
s
simplifyby CalebFenton
Android virtual machine and deobfuscator
Java
4179
Updated: 2 y ago
License: Proprietary (Proprietary)
Support
Quality
Security
License
Reuse
o
ootby zeldaret
Decompilation of The Legend of Zelda: Ocarina of Time
C
4089
Updated: 2 y ago
License: No License (No License)
Support
Quality
Security
License
Reuse
L
LIEFby lief-project
LIEF - Library to Instrument Executable Formats
C++
3738
Updated: 2 y ago
License: Permissive (Apache-2.0)
Support
Quality
Security
License
Reuse
q
Support
Quality
Security
License
Reuse
t
the-backdoor-factoryby secretsquirrel
Patch PE, ELF, Mach-O binaries with shellcode new version in development, available only to sponsors
Python
3144
Updated: 2 y ago
License: Permissive (BSD-3-Clause)
Support
Quality
Security
License
Reuse
m
miasmby cea-sec
Reverse engineering framework in Python
Python
3079
Updated: 2 y ago
License: Strong Copyleft (GPL-2.0)
Support
Quality
Security
License
Reuse
c
capaby mandiant
The FLARE team's open-source tool to identify capabilities in executable files.
Python
3068
Updated: 2 y ago
License: Permissive (Apache-2.0)
Support
Quality
Security
License
Reuse
p
plasmaby plasma-disassembler
Plasma is an interactive disassembler for x86/ARM/MIPS. It can generates indented pseudo-code with colored syntax.
Python
3008
Updated: 2 y ago
License: Strong Copyleft (GPL-3.0)
Support
Quality
Security
License
Reuse
f
fernflowerby fesh0r
Unofficial mirror of FernFlower Java decompiler (All pulls should be submitted upstream)
Java
2915
Updated: 2 y ago
License: No License (No License)
Support
Quality
Security
License
Reuse
T
Tritonby JonathanSalwan
Triton is a dynamic binary analysis library. Build your own program analysis tools, automate your reverse engineering, perform software verification or just emulate code.
C++
2881
Updated: 2 y ago
License: Permissive (Apache-2.0)
Support
Quality
Security
License
Reuse
f
frida-ios-dumpby AloneMonkey
pull decrypted ipa from jailbreak device
JavaScript
2846
Updated: 2 y ago
License: Permissive (MIT)
Support
Quality
Security
License
Reuse
f
flare-vmby fireeye
PowerShell
2844
Updated: 4 y ago
License: Permissive (Apache-2.0)
Support
Quality
Security
License
Reuse
d
dumpdecryptedby stefanesser
Dumps decrypted mach-o files from encrypted iPhone applications from memory to disk. This tool is necessary for security researchers to be able to look under the hood of encryption.
C
2783
Updated: 2 y ago
License: No License (No License)
Support
Quality
Security
License
Reuse
b
binnaviby google
BinNavi is a binary analysis IDE that allows to inspect, navigate, edit and annotate control flow graphs and call graphs of disassembled code.
Java
2742
Updated: 4 y ago
License: Permissive (Apache-2.0)
Support
Quality
Security
License
Reuse
S
SpaceCadetPinballby k4zmu2a
Decompilation of 3D Pinball for Windows – Space Cadet
C++
2738
Updated: 2 y ago
License: Permissive (MIT)
Support
Quality
Security
License
Reuse
p
pafishby a0rtega
Pafish is a testing tool that uses different techniques to detect virtual machines and malware analysis environments in the same way that malware families do
C
2730
Updated: 2 y ago
License: Strong Copyleft (GPL-3.0)
Support
Quality
Security
License
Reuse
p
proxmark3by RfidResearchGroup
The Iceman fork of Proxmark3 / RFID / NFC reader, writer, sniffer and emulator
C
2699
Updated: 2 y ago
License: Strong Copyleft (GPL-3.0)
Support
Quality
Security
License
Reuse
a
apkstudioby vaibhavpandeyvpz
Open-source, cross platform Qt based IDE for reverse-engineering Android application packages.
C++
2559
Updated: 2 y ago
License: Weak Copyleft (LGPL-3.0)
Support
Quality
Security
License
Reuse
c
coronaby geohot
Reverse engineering SARS-CoV-2
Python
2375
Updated: 2 y ago
License: No License (No License)
Support
Quality
Security
License
Reuse
d
dynamorioby DynamoRIO
Dynamic Instrumentation Tool Platform
C
2300
Updated: 2 y ago
License: Proprietary (Proprietary)
Support
Quality
Security
License
Reuse
M
Support
Quality
Security
License
Reuse
I
Il2CppInspectorby djkaty
Powerful automated tool for reverse engineering Unity IL2CPP binaries
C
2224
Updated: 2 y ago
License: Strong Copyleft (AGPL-3.0)
Support
Quality
Security
License
Reuse
r
rehexby solemnwarning
Reverse Engineers' Hex Editor
C++
2133
Updated: 2 y ago
License: Strong Copyleft (GPL-2.0)
Support
Quality
Security
License
Reuse
E
EasyProtectorby lamster2018
一行代码检测XP/调试/多开/模拟器/root
Java
2047
Updated: 2 y ago
License: Permissive (Apache-2.0)
Support
Quality
Security
License
Reuse
p
pycdcby zrax
C++ python bytecode disassembler and decompiler
C++
1987
Updated: 2 y ago
License: Strong Copyleft (GPL-3.0)
Support
Quality
Security
License
Reuse
r
rizinby rizinorg
UNIX-like reverse engineering framework and command-line toolset.
C
1943
Updated: 2 y ago
License: Weak Copyleft (LGPL-3.0)
Support
Quality
Security
License
Reuse
d
droidReverseby Juude
reverse engineering tools for android(android 逆向工程工具集)
Shell
1904
Updated: 2 y ago
License: No License (No License)
Support
Quality
Security
License
Reuse
l
lighthouseby gaasedelen
A Coverage Explorer for Reverse Engineers
Python
1892
Updated: 2 y ago
License: Permissive (MIT)
Support
Quality
Security
License
Reuse
A
APKLabby APKLab
Android Reverse-Engineering Workbench for VS Code
TypeScript
1835
Updated: 2 y ago
License: Strong Copyleft (AGPL-3.0)
Support
Quality
Security
License
Reuse
p
pyinstxtractorby extremecoders-re
PyInstaller Extractor
Python
1750
Updated: 2 y ago
License: Strong Copyleft (GPL-3.0)
Support
Quality
Security
License
Reuse
r
Support
Quality
Security
License
Reuse
D
Support
Quality
Security
License
Reuse
c
capaby fireeye
The FLARE team's open-source tool to identify capabilities in executable files.
Python
1645
Updated: 4 y ago
License: Permissive (Apache-2.0)
Support
Quality
Security
License
Reuse
r
ret-syncby bootleg
ret-sync is a set of plugins that helps to synchronize a debugging session (WinDbg/GDB/LLDB/OllyDbg2/x64dbg) with IDA/Ghidra/Binary Ninja disassemblers.
C
1636
Updated: 2 y ago
License: Strong Copyleft (GPL-3.0)
Support
Quality
Security
License
Reuse