
vbSparkle
VBScript & VBA source-to-source deobfuscator with partial-evaluation

VBScript & VBA source-to-source deobfuscator with partial-evaluation

Royal APT - APT15 - Related Information from NCC Group Cyber Defense Operations Research

The repository that contains the algorithms for generating domain names, dictionaries of malicious domain names. Developed to research the…

This Repository is created after my own research into malicious browser extensions, by brining the work of many others and news articles into one…

USB HID driver emulation with PID/VID (0x3bca/0x27bb) of Plenom A/S Busylight Alpha, that is supported by Mimikatz. When mimikatz is executed, a…

Rig Exploit for CVE-2018-8174 As with its previous campaigns, Rig’s Seamless campaign uses malvertising. In this case, the malvertisements have a…

A version of the binary patched to address CVE-2018-20250

A Linux version of the ProcDump Sysinternals tool

History of commits related to the xz backdoor Discovered On March 29, 2024: CVE-2024-3094.

Curated repository of live malware samples and source code for educational malware analysis and research, with an organized database and CLI tools…

Patch PE, ELF, Mach-O binaries with shellcode new version in development, available only to sponsors

This repository contains POC scenarios as part of CVE-2025-0411 MotW bypass.

Proof-of-concept exploit for CVE-2025-0411, demonstrating Mark-of-the-Web bypass in 7-Zip to enable arbitrary code execution via crafted archives…

You didn't think I'd go and leave the blue team out, right?

A workshop about Malware Development

CuckooDroid - Automated Android Malware Analysis with Cuckoo Sandbox.

c++ fully undetected shellcode launcher ;)

A centralized and enhanced memory analysis platform