
kaiju
CERT Kaiju is a binary analysis framework extension for the Ghidra software reverse engineering suite. This repository is a "mirror" -- please file…

CERT Kaiju is a binary analysis framework extension for the Ghidra software reverse engineering suite. This repository is a "mirror" -- please file…

An automatic unpacker and logger for DotNet Framework targeting files

Crawlector is a threat hunting framework designed for scanning websites for malicious objects.

This is part of a module for the framework that i'm constantly developing. Currently only information of the C2 are disclosed here.

AST-based Python code transformation & deobfuscation framework

🦅 ZeroScout: The Autonomous Local & Cloud Threat Hunter. Visualize attacks in a live War Room, identify APT groups via Genetic Analysis, and…

Static and dynamic Android application security analysis

Android Malware Tracker

A binary analysis framework

An advanced memory forensics framework

DECAF (short for Dynamic Executable Code Analysis Framework) is a binary analysis platform based on QEMU. This is also the home of the DroidScope…

Semantic analysis engine for detecting vulnerability fixes in Windows kernel driver patches — 58 YAML rules, Ghidra decompilation, reachability…

Multi-architecture disassembly framework providing a lightweight, thread-safe API for binary analysis, reverse engineering, and malware research…

Scriptable binary emulation framework integrating IDA Pro/Radare2 with Unicorn engine for automated malware analysis, string decryption, and code…

idahunt is a framework to analyze binaries with IDA Pro and hunt for things in IDA Pro

Berry Sentinel v5.0 — Advanced behavioral C2 and reverse shell detector for Linux/Windows/Unix systems. Features real-time connection analysis,…

Windows malware emulation framework that executes binaries, drivers, and shellcode in a modeled runtime, emulating APIs, process/thread behavior,…

A Virtual Machine For Assessing Android applications, Reverse Engineering and Malware Analysis