
fridump
Cross-platform memory dumper using Frida to extract accessible memory from iOS, Android, and Windows applications for forensic analysis and…

Cross-platform memory dumper using Frida to extract accessible memory from iOS, Android, and Windows applications for forensic analysis and…

Free educational content on reverse engineering and malware analysis from the FLARE team

Builds malware analysis Windows VMs so that you don't have to.

Advanced macOS system monitor leveraging Apple Endpoint Security to collect, enrich, and display process, file, memory, and XPC events for malware…

NFStream: a Flexible Network Data Analysis Framework.

Windows tool for dumping malware PE files from memory back to disk for analysis.

Python-based malware analysis sandbox that integrates with Sysinternals Procmon to automatically collect, analyze, and report runtime indicators with…

🚀🚀 This is a 🎇🔥 REAL WORLD🔥 🎇 Malware Collection I have Compiled & analysed by researchers🔥 to understand more about Malware threats😈,…

Some of my publicly available Malware analysis and Reverse engineering.


Endpoint behavior monitoring and analysis system for processes, files, registry, and networks. Supports scripting, extensions, and plugins for…

Labs for Practical Malware Analysis & Triage

PEframe is a open source tool to perform static analysis on Portable Executable malware and malicious MS Office documents.

Reverse-engineered analysis of Microsoft's Global Device Identifier (GDID) revealing its generation as a server-assigned MSA Device PUID, storage in…

A centralized and enhanced memory analysis platform

Malcolm is a powerful, easily deployable network traffic analysis tool suite for full packet capture artifacts (PCAP files), Zeek logs and Suricata…

Imaginary C2 is a python tool which aims to help in the behavioral (network) analysis of malware. Imaginary C2 hosts a HTTP server which captures…

A multi-platform GUI for bit-based analysis, processing, and visualization