
fnprint
match functions in binaries by what they do, not what their bytes look like. behavioral function fingerprinting via microexecution.

match functions in binaries by what they do, not what their bytes look like. behavioral function fingerprinting via microexecution.

POC about how to detect windows kernel debug by pool tag.

MCP-powered reverse engineering platform connecting WinDbg, IDA Pro & x64dbg with 160+ AI-accessible debugging and analysis tools.

This repository contains the complete record of my three-year research journey, covering the project from foundational concepts to advanced-level…

WslinkVMAnalyzer is a tool to facilitate analysis of code protected by a virtual machine featured in Wslink malware

Ressources and papers related to my conferences and work on (un)RASPs. These work is in progress, please be patient :) Don't hesitate to contribute /…

Open YARA scan- and search engine

Collection of extracted Microsoft Defender data for security research purposes

A collection of Tools and Rules for decoding Brute Ratel C4 badgers

Collection of some easy of use tools - in powershell.

A Feature Rich Modular Malware Configuration Extraction Utility for MalDuck

This repository includes code and IoCs that are the product of research done in Akamai's various security research teams.

A DTrace on Windows Reimplementation

Cisco ASA Software and ASDM Security Research

Interesting APT Report Collection And Some Special IOCs

Strelka Web UI for File Submission and Analysis

GarbageMan is a set of tools for analyzing .NET binaries through heap analysis.