
ExtractedDefender
Collection of extracted Microsoft Defender data for security research purposes

Collection of extracted Microsoft Defender data for security research purposes

User-friendly Microsoft Windows Debugger for Malware Analysts.

Lockbit3.0 Microsoft Defender MpClient.dll DLL Hijacking PoC

🔵 Threat analysis writeup for Follina (CVE-2022-30190) — Microsoft MSDT RCE zero-day exploited in the wild. Covers static analysis, VirusTotal,…

Enable Microsoft PDB support in Ghidra without installing Visual Studio

Red Team C code repo


NCC Group's analysis and exploitation of CVE-2017-8759 along with further refinements


CVE-2017-0144

Static analysis of 2 malicious Office documents on REMnux using oletools; identified CVE-2017-11882 and obfuscated macros.

It shook the world in 2017 and has evolved into today’s CVE‑2025‑2776. Microsoft still relies on SMBv1, this article will explain how attackers have…

Exploration of the Follina (CVE-2022-30190) Microsoft Office vulnerability, including a detailed analysis, proof-of-concept exploitation in a…

This docx exploit uses res files inside Microsoft .docx file to execute malicious files. This exploit is related to CVE-2021-40444

POC OF CVE-2022-21970

Microsoft-Office-Word-MSHTML-Remote-Code-Execution-Exploit

Full exploit chain lab and Suricata IDS detection for CVE-2022-30190 (Follina) - MSDT RCE

Python based tool for generating Shellcode from PIC C