x64dbg 是一个开源的Windows二进制调试器,旨在进行恶意软件分析和你没有源代码的可执行文件的逆向工程。有许多可用的功能和一个全面的插件系统来添加你自己的功能
TruffleHog 是一个用来探测泄漏密钥的工具,支持扫描的数据源包括git、github、gitlab、S3、文件系统、文件和标准输入
MobSF (移动端安全框架)是一个自动化的移动端应用程序(Android/iOS/Windows)安全问题检出的框架和工具,可以进行静态和动态分析的渗透测试,恶意软件分析和安全评估
#安卓#The Mobile Application Security Testing Guide (MASTG) is a comprehensive manual for mobile app security testing and reverse engineering. It describes the technical processes for verifying the controls...
翻译 - 移动安全测试指南(MSTG)是用于移动应用安全开发,测试和逆向工程的综合手册。
The Mobile App Pentest cheat sheet was created to provide concise collection of high value information on specific mobile application penetration testing topics.
Triton is a dynamic binary analysis library. Build your own program analysis tools, automate your reverse engineering, perform software verification or just emulate code.
翻译 - Triton是动态二进制分析(DBA)框架。它提供了内部组件,例如动态符号执行(DSE)引擎,动态污点引擎,x86,x86-64和AArch64指令集体系结构(ISA)的AST表示,SMT简化传递,SMT求解器界面以及最后一个尤其重要的是Python绑定。
#安卓#Awesome Frida - A curated list of Frida resources http://www.frida.re/ (https://github.com/frida/frida)
#十六进制编辑器#Analyze ELF binaries like a boss 😼🕵️♂️
Android Package Inspector - dynamic analysis with api hooks, start unexported activities and more. (Xposed Module)
Platform for Architecture-Neutral Dynamic Analysis
翻译 - 中性动力学分析平台
#安卓#Hand-crafted Frida examples
Automated code reviews via mutation testing - semantic code coverage.
翻译 - Ruby的变异测试
#安卓#Binary instrumentation framework based on FRIDA
翻译 - 基于FRIDA的二进制检测框架
Python antivirus evasion tool
#Awesome#A curated list of awesome symbolic execution resources including essential research papers, lectures, videos, and tools.
Radare2 and Frida better together.
An analysis tool for Python that blurs the line between testing and type systems.
翻译 - 用于Python的静态分析工具,模糊了测试系统和类型系统之间的界限。
⚙️ A curated list of dynamic analysis tools and linters for all programming languages, binaries, and more.