
Sandb0x-Xtract0r
Automated cross-platform sandbox that detonates suspicious files in isolated VMs/emulators, captures network and memory artifacts, and creates LLM…

Automated cross-platform sandbox that detonates suspicious files in isolated VMs/emulators, captures network and memory artifacts, and creates LLM…

match functions in binaries by what they do, not what their bytes look like. behavioral function fingerprinting via microexecution.

A curated portfolio showcasing my SOC investigations, threat hunting projects, DFIR labs, detection engineering, technical blogs, and cybersecurity…

Behavioral Malware Analysis of a Simulated Multi-Stage Windows Malware Sample using FLARE-VM and REMnux. Evidence-driven DFIR investigation with IOC…

Android Antivirus which doesn't require root, adb, ca install and cloud with many features and ways to detect more zero-day malware

MCP-powered reverse engineering platform connecting WinDbg, IDA Pro & x64dbg with 160+ AI-accessible debugging and analysis tools.

A Windows userland tool to enumerate and classify ALPC ports, including PPL-protected processes.

CS50 Cybersecurity Final Project - Analysis of CVE-2024-3094



Signatures and IoCs from public Volexity blog posts.

Open YARA scan- and search engine

This repository contains a list of new remediation scripts.


Sophos-originated indicators-of-compromise from published reports

Assortment of hashing algorithms used in malware
