
deobf-Arxan-Deob-C
Simple C program to quickly deobfuscate windows executables protected with Arxan.

Simple C program to quickly deobfuscate windows executables protected with Arxan.

Hands-on DFIR challenges covering digital forensics, incident response, malware analysis, and threat hunting with CTF-style flags and real-world…

A simple and efficent script to obfuscate python payloads to make it completely FUD

Generates unique polymorphic decryption code for encrypting data, using randomly selected instructions and keys, with junk opcode generation. Written…

Simple, effective, and modular package for parsing observables (indicators of compromise (IOCs), network data, and other, security related…

Scans websites for SocGholish JavaScript injections, deobfuscates malicious payloads, and reports shadowing domain URLs used in malvertising…

This is a little plugin to copy disassembly in a way that is usable in YARA rules!

Simple dotnet Native AOT app that uses LibObjectFile to convert shellcode to ELF

Simple Webshell Scanner

A LSTM based framework for handling multiclass imbalance in DGA botnet detection

Simple framework to extract "actionable" data from Android malware (C&Cs, phone numbers etc.)

Simple decrypter for Java AdWind, jRAT, jBifrost trojan

Created a VERY SIMPLE remote access Trojan that will establish administrative control over any windows machine it compromises.

Contains a simple yara rule to hunt for possible compromised KeePass config files

🔍 A simple Bash script to detect malicious JSP webshells, including those used in exploits of SAP NetWeaver CVE-2025-31324.

It shook the world in 2017 and has evolved into today’s CVE‑2025‑2776. Microsoft still relies on SMBv1, this article will explain how attackers have…

A simple PoC demonstrating the vulnerability in the ThrottleStop.sys driver, showcasing arbitrary physical memory read and write capabilities, as…

A sample POC for CVE-2021-30657 affecting MacOS