
Hunt-Weird-ImageLoads
Small tool to play with IOCs caused by Imageload events

Small tool to play with IOCs caused by Imageload events

Callstack scanner that identifies IOCs of unpacked or injected C2 agents by analyzing thread idle behavior, unbacked memory, module stomping, APCs,…

Project Ares is a Proof of Concept (PoC) loader written in C/C++ based on the Transacted Hollowing technique

InjectProc - Process Injection Techniques [This project is not maintained anymore]

DARKSURGEON is a Windows packer project to empower incident response, digital forensics, malware analysis, and network defense.

makin - reveal anti-debugging and anti-VM tricks [This project is not maintained anymore]

SSMA - Simple Static Malware Analyzer [This project is not maintained anymore by me]

This project is a SIEM with SIRP and Threat Intel, all in one.

The OWASP SecureTea Project provides a one-stop security solution for various devices (personal computers / servers / IoT devices)

idenLib - Library Function Identification [This project is not maintained anymore]

KittyStager is a simple stage 0 C2. It is made of a web server to host the shellcode and an implant, called kitten. The purpose of this project is to…

NebulaPulsar is a proof-of-concept in-memory implant framework for Java (JSP) and ASP.NET (ASPX/ASHX/ASMX) webshells, originally developed as part of…

This repository contains the complete record of my three-year research journey, covering the project from foundational concepts to advanced-level…


CS50 Cybersecurity Final Project - Analysis of CVE-2024-3094

Educational cybersecurity project demonstrating exploitation and mitigation of CVE-2020-25213 (WordPress File Manager Plugin RCE). Includes malware…

Security & Privacy in Computing(Fall 2018), Final Group Project at JHUISI, clamscan vulnerability in Cisco's ClamAV 0.99.3

Project Repository for Exploitation, Detection and Mitigation of Folina Vulnerability (CVE-2022-30190)