
jsp-webshell-scanner
🔍 A simple Bash script to detect malicious JSP webshells, including those used in exploits of SAP NetWeaver CVE-2025-31324.

🔍 A simple Bash script to detect malicious JSP webshells, including those used in exploits of SAP NetWeaver CVE-2025-31324.

Example InSpec profile to detect presence of a malicious rest-client gem (CVE-2019-15224)

POC about how to detect windows kernel debug by pool tag.

Android Antivirus which doesn't require root, adb, ca install and cloud with many features and ways to detect more zero-day malware

Different methods to detect a virtualized environment or potential debugging

Scans a given process. Recognizes and dumps a variety of potentially malicious implants (replaced/injected PEs, shellcodes, hooks, in-memory patches).

Binary Ninja plugin to identify obfuscated code and other interesting code constructs

A dynamic unpacking tool

Hardware Sandbox Toolkit

Detection of malicious VHD files for CVE-2025-24985

Detect CVE-2026-45321 Mini Shai-Hulud supply chain compromise — scans for 170 npm + 2 PyPI poisoned packages across TanStack, Mistral AI, UiPath,…

Detecting vulnerabilities like CVE-2024-0762, particularly in UEFI firmware, is quite challenging due to the low-level nature

Anti Virtulization, Anti Debugging, AntiVM, Anti Virtual Machine, Anti Debug, Anti Sandboxie, Anti Sandbox, VM Detect package. Windows ONLY.

Detect potentially malicious PHP files

Yet another static code analyzer for malicious Android applications

PHP-based anti-virus anti-trojan anti-malware solution.


YARA-based scanner that detects obfuscated PHP malware and webshells using semantic pattern matching instead of file hashes, with a whitelist system…