
mal_unpack
Runs packed malware in a controlled environment, waits for self-unpacking, dumps PE files and shellcodes from memory, and terminates the process.

Runs packed malware in a controlled environment, waits for self-unpacking, dumps PE files and shellcodes from memory, and terminates the process.

Source code of a multiple series of tutorials about the hypervisor. Available at: https://rayanfam.com/tutorials

Discover DYLD_INSERT_LIBRARIES hijacks on macOS


Scans a list of raccoon servers from Tria.ge and extracts the config

A PowerShell script that attempts to help malware analysts hide their VMware Windows VM's from malware that may be trying to evade analysis.

Expose USB activity on the fly

Python bindings for BochsCPU

In this workshop session, we will extract firmware from an EV charger, dig into the firmware, and eventually emulate it so we can interact with the…


SkypeACLKeyGen.exe analysis for hacking team

OpenAnt from Knostic is the leading open source LLM-based vulnerability discovery product, helping defenders proactively find verified security flaws…

A secure* runtime for autonomous AI agents. Policy from plain-English constitutions. (*https://ironcurtain.dev)


Adaptix C2 service plugin that drives LitterBox payload analysis from the operator UI.

Build anti-detection Frida server from source. ~90 patches covering 16 detection vectors, weekly auto-builds with random names.

Extracts nanocore sample from compile AutoIT script

SnakeYAML CVE-2022-1471 exploit payload for demo