
vol-rs
Volatility 3 ported to Rust. Same output, much faster.

Volatility 3 ported to Rust. Same output, much faster.

Shellcode emulator written with Unicorn Framework With Process Dump Emulation Environment

Linux post-exploitation framework with a UEFI bootkit that persistently and stealthily loads a Rust-based kernel module rootkit on modern Linux…

An advanced memory forensics framework

Scriptable binary emulation framework integrating IDA Pro/Radare2 with Unicorn engine for automated malware analysis, string decryption, and code…

A next generation of ransomware. Fully written using a .Net Framework + C&C System

Advanced framework for extracting digital artifacts from volatile memory (RAM) samples, enabling deep forensic analysis of system runtime state…

Crawlector is a threat hunting framework designed for scanning websites for malicious objects.

Dissect is a digital forensics & incident response framework and toolset that allows you to quickly access and analyse forensic artefacts from…

A framework for automated extraction of static and dynamic features from Android applications

amavis is a high-performance email content filter framework written in Perl.

Multi-Packer wrapper letting us daisy-chain various packers, obfuscators and other Red Team oriented weaponry. Featured with artifacts watermarking,…

Anteater - CI/CD Gate Check Framework

Modular file scanning/analysis framework

pyREtic is an extensible framework for in-memory Python 2.x bytecode reverse engineering

CERT Kaiju is a binary analysis framework extension for the Ghidra software reverse engineering suite. This repository is a "mirror" -- please file…

Botnet monitoring is a crucial part in threat analysis and often neglected due to the lack of proper open source tools. Our tool will provide an open…

A framework that create an advanced stealthy dropper that bypass most AVs and have a lot of tricks