
scan
0-day malware detection for binaries, source & scripts (that doesn't suck)

0-day malware detection for binaries, source & scripts (that doesn't suck)

UNIX-like reverse engineering framework and command-line toolset


Incident Response & Digital Forensics Debugging Extension

Virus Total API Maltego Transform Set For Canari

GEF (GDB Enhanced Features) - a modern experience for GDB with advanced debugging capabilities for exploit devs & reverse engineers on Linux


Modular file scanning/analysis framework

IDA python scripts to decrypt strings from KPOT and set those as comments

A python2 script for sweeping a network to find windows systems compromised with the DOUBLEPULSAR implant.

A curated set of NSO Group internal documents, product materials and sworn testimony that entered the public record in WhatsApp Inc. and Meta…

Telegram Desktop Session Stealer

TeleShadow - Telegram Desktop Session Stealer (Windows)

A set of scripts for a radare-based malware code analysis workflow

Windows kernel driver technique that hides kernel threads by abusing IoCancelIrp and IRP cancel routines, with detection methods for identifying…

A fully functional DanderSpritz lab in 2 commands

A set of functions to increase productivity while hacking with Bash

GarbageMan is a set of tools for analyzing .NET binaries through heap analysis.