While many Infosec fields have a defacto standard tool to tackle most tasks like Ida,Ghidra or Binja for binaries or the burp suite for Webapps not much can be found on good tooling for source code auditing. This is rather strange as many interesting targets nowadays are available as open-source. This talk will present and highlight the pros/cons of different tools/approaches the presenter has found and tried.