
Apkx-Hunter
C-based Android static analysis framework for decompilation, secret detection, endpoint discovery, permission analysis, and native library scanning…

C-based Android static analysis framework for decompilation, secret detection, endpoint discovery, permission analysis, and native library scanning…

DFIR Timeline Analysis for macOS — SQLite-backed viewer for CSV, TSV, XLSX, EVTX, Plaso, $MFT, and $J files with AI Artifacts, AI Secret Hunt,…

Scans all running processes. Recognizes and dumps a variety of potentially malicious implants (replaced/implanted PEs, shellcodes, hooks, in-memory…

🦅 ZeroScout: The Autonomous Local & Cloud Threat Hunter. Visualize attacks in a live War Room, identify APT groups via Genetic Analysis, and…

Detect Linux rootkits which use signals to elevate process privileges.

The Hunt for Malicious Strings

Real-time C2 traffic extractor for malware analysts. Hooks Win32 connection APIs to intercept and analyze command-and-control communication,…

Hunts out CobaltStrike beacons and logs operator command output

idahunt is a framework to analyze binaries with IDA Pro and hunt for things in IDA Pro

Kaspersky's GReAT KLara

Contains a simple yara rule to hunt for possible compromised KeePass config files

A basic phishing kit scanner for dedicated and semi-dedicated hosting

Tools and technical write-ups describing attacking techniques that rely on concealing code execution on Windows

Rogue Assembly Hunter is a utility for discovering 'interesting' .NET CLR modules in running processes.

Kernel-Mode Rootkit Hunter

iOS Malicious Bit Hunter is a malicious plug-in detection engine for iOS applications. It can analyze the head of the macho file of the injected…