
halogen
Automatically create YARA rules from malicious documents.

🔬 Jupyter notebook to help automate some of the forensic analysis related to Citrix Netscalers compromised via CVE-2019-19781

Rip Raw is a small tool to analyse the memory of compromised Linux systems.

androidqf (Android Quick Forensics) helps quickly gathering forensic evidence from Android devices, in order to identify potential traces of…

Automation tool designed to simplify the analysis of PCAP (Packet Capture) files


FLARE floss applied to all unpacked+dumped samples in Malpedia, pre-processed for further use.

An forensics tool to help aid in the investigation of spoofed emails based off the email headers.

This Python application scans for the CVE-2023-38831 vulnerability in WinRAR.

Web-based tool for browsing mobile application sandboxes, previewing SQLite databases and binary files, and downloading app data via Frida…

Imaginary C2 is a python tool which aims to help in the behavioral (network) analysis of malware. Imaginary C2 hosts a HTTP server which captures…

A network packet forensics tool for SSH

A tool to analyze the network flow during attack/defence Capture the Flag competitions

Chepy is a python lib/cli equivalent of the awesome CyberChef tool.

APKinspector is a powerful GUI tool for analysts to analyze the Android applications.

It was developed to speed up the processes of SOC Analysts during analysis

APT-Hunter is Threat Hunting tool for windows event logs which made by purple team mindset to provide detect APT movements hidden in the sea of…

a file-sharing tool that allows you to find the responsible person in case of a leakage