
etl-parser
Event Trace Log file parser in pure Python

Event Trace Log file parser in pure Python

Collection of materials relating to FORCEDENTRY

Configuration Extractors for Malware

GarbageMan is a set of tools for analyzing .NET binaries through heap analysis.

First-ever decryptor for The Gentlemen ransomware — recovers encryption keys from process memory dumps using X25519 ephemeral key extraction. 35/35…

Indicator of Compromise Scanner for CVE-2019-19781

A proof-of-concept for (CVE-2023-38840) that extracts plaintext master passwords from a locked Bitwarden vault.

Generate bulk YARA rules from YAML input

General malware analysis stuff

Collection of some easy of use tools - in powershell.

Technical Analysis of Bibi-Windows Wiper Targeting Israeli Organizations

Network forensics writeup + tooling for a TryHackMe DFIR challenge: reverses a hex→Base64→XOR exfiltration chain from PCAP traffic, then recovers a…

Lack of argument sanitization leading to password leakage in Ghostscript PDF versions up to 10.05.0.


Extract a concerning amount of user information from Unisoc ZTE devices using CVE-2022-38694.

CyberDefenders JetBrains Lab

TryHackMe SOC Level 1 — Follina CVE-2022-30190, Nim C2, Chisel, PrintSpoofer, backdoor accounts

GNU Radio out-of-tree (OOT) module for QRadioLink blocks.