
malware-samples
Malware samples, analysis exercises and other interesting resources.

Malware samples, analysis exercises and other interesting resources.

iOS and macOS Decompiler

PrivKit is a simple beacon object file that detects privilege escalation vulnerabilities caused by misconfigurations on Windows OS.

PE-bear (builds only)

PE loader with various shellcode injection techniques

DriverBuddy is an IDA Python script to assist with the reverse engineering of Windows kernel drivers.

Ghidra plugin that automates UEFI firmware analysis by identifying known GUIDs, protocols, SMI handlers, and interrupt functions, with headless…

This is the main repository for metasm, a free assembler / disassembler / compiler written in ruby


convert ELF/DWARF symbol and type information into vol3's intermediate JSON

Define and match user-defined graph patterns against binary control flow graphs using a Capstone-based disassembler, with CLI, Python bindings, and…

Some Rust program I wrote while learning Malware Development

Python Command-Line Ghidra Decompiler

Automates repair of malformed UPX headers in ELF binaries, restoring magic, filesize, blocksize, and overlay fields so standard unpackers can process…

Use YARA rules on Time Travel Debugging traces

Application Hijack Scanner for macOS

Python library for parsing CLR/PE metadata in .NET assemblies, exposing streams and hash fingerprints to support malware analysis and threat hunting.

Lnk crafting and research tools