
vt-py
The official Python 3 client library for VirusTotal

The official Python 3 client library for VirusTotal

The official Go client library for VirusTotal API

A Windows userland tool to enumerate and classify ALPC ports, including PPL-protected processes.

Just a git repo for the sleepmask detection rule i found in https://codex-7.gitbook.io/codexs-terminal-window/blue-team/detecting-cobalt-strike/sleep-…

Analysis of malware and Cyber Threat Intel of APT and cybercriminals groups

Scans websites for SocGholish JavaScript injections, deobfuscates malicious payloads, and reports shadowing domain URLs used in malvertising…


Cortex: a Powerful Observable Analysis and Active Response Engine

A command-line utility for Windows written in C that creates and configures persistent Event Tracing for Windows (ETW) AutoLogger sessions.

Simple Webshell Scanner

Suspicious DGA from PDNS and Sandbox.

Botnet monitoring is a crucial part in threat analysis and often neglected due to the lack of proper open source tools. Our tool will provide an open…

Scripts and utilities to help your hacking needs

Botnet command & control monitor

Knowledge base workflow management for YARA rules and C2 artifacts (IP, DNS, SSL) (ALPHA STATE AT THE MOMENT)

CVE-2023-20052, information leak vulnerability in the DMG file parser of ClamAV

RTF de-obfuscator for CVE-2017-0199 documents to find URLs statically.

Extract payload URLs from Follina (CVE-2022-30190) docx and rtf files