#2Tools for observing malware behavior in isolated environments to understand its actions and impact.
Kitploit recommended

CVE-2026-39808 - Fortinet Sandbox - Draft

SnakeYAML CVE-2022-1471 exploit payload for demo

frida-stalker based system call tracer on windows(x64).

Distributed malware processing framework based on Python, Redis and S3.

wsb-detect enables you to detect if you are running in Windows Sandbox ("WSB")

Modified edition of cuckoo

Automatically exported from code.google.com/p/jsunpack-n

A proof of concept demonstrating instrumentation callbacks on Windows 10 21h1 with a TLS variable to ensure all syscalls are caught.

Script analysis tool based on Frida.re

Frida.re based RunPE (and MapViewOfSection) extraction tool

Process-independent interface to Linux system calls

RCE exploit toolkit for CVE-2025-55182 and CVE-2025-66478 in React Server Components. Includes multiple exploit variants, detection scripts, a…

Access radare2 from anywhere, anytime.

Vulnerability scanner for Spring4Shell (CVE-2022-22965)

Extracts nanocore sample from compile AutoIT script

Proof-of-concept exploit for CVE-2021-44228 (Log4Shell) targeting Java applications via JNDI injection for remote code execution.

Proof-of-concept exploit environment for CVE-2026-42945 targeting nginx 1.30.0 on Ubuntu 22.04 with PHP-FPM, packaged as a Docker-based local testing…

Detects exposed React Server Components vulnerable to CVE-2025-55182 via RSC negotiation.