
PortEx
Java library to analyse Portable Executable files with a special focus on malware analysis and PE malformation robustness

Java library to analyse Portable Executable files with a special focus on malware analysis and PE malformation robustness

Pure Rust x86 hardware emulator and Windows process simulator for malware analysis, shellcode emulation, and payload unpacking. Supports 32/64-bit PE…

Decompiles serialized V8 bytecode (JSC files) into high-level readable JavaScript-like code, with support for multiple V8 versions, tree output, and…

Detects process injection and memory manipulation used by malware. Finds RWX regions, shellcode patterns, API hooks, thread hijacking, and process…

Curated guide to becoming a malware analyst, covering essential knowledge, reverse engineering, analysis tools, and LLM-assisted learning with…

A malware analysis and classification tool.

DrSemu - Sandboxed Malware Detection and Classification Tool Based on Dynamic Behavior

Simulate the behavior of AV/EDR for malware development training.

A security-first MCP server that empowers AI agents to perform automated reverse engineering, malware analysis, forensics, vulnerability research,…

Cosa Nostra, a FOSS graph based malware clusterization toolkit.

🦆 Malduck is your ducky companion in malware analysis journeys


FileInsight-plugins: decoding toolbox of McAfee FileInsight hex editor for malware analysis

A .NET malware loader, using API-Hashing to evade static analysis

Randomly changes Win32/64 PE Files for 'safer' uploading to malware and sandbox sites.

User-friendly Microsoft Windows Debugger for Malware Analysts.

Collection of scripts for malware analysis, deobfuscation, and configuration extraction. Supports static analysis, unpacking, shellcode conversion,…

Python tool and library to help analyze files during malware triage and analysis.