
maldrolyzer
Simple framework to extract "actionable" data from Android malware (C&Cs, phone numbers etc.)

Simple framework to extract "actionable" data from Android malware (C&Cs, phone numbers etc.)

A machine learning malware analysis framework for Android apps.

C-based Android static analysis framework for decompilation, secret detection, endpoint discovery, permission analysis, and native library scanning…

Static and dynamic Android application security analysis

Live Hidden Camera is a library which record live video and audio from Android device without displaying a preview.

Cisco ASA Software and ASDM Security Research

A curated set of NSO Group internal documents, product materials and sworn testimony that entered the public record in WhatsApp Inc. and Meta…

JADX plugin that extracts method names, class references, and source file paths from string constants found in DEX files and decompiled Android code.

A simple tool to allows users to search for and analyze android apps for potential security threats and vulnerabilities

Ressources and papers related to my conferences and work on (un)RASPs. These work is in progress, please be patient :) Don't hesitate to contribute /…

MAPS cloud scanner and response parser for Microsoft Defender research.

Framework for hashing declared permissions in Chromium extensions and APKs, enabling clustering, hunting, and pivoting across potentially malicious…

A simple and efficent script to obfuscate python payloads to make it completely FUD

Scripts for communication with Bunitu Trojan C&Cs

A simple and scalable Android bot emulation framework, as presented at Black Hat Europe 2021's Arsenal, as well as atHack 2021's Arsenal

Android Malware Tracker

Python-based tool to detect ransomware infections and malicious code in MySQL instances. Performs reconnaissance, user enumeration, and deep scans…

PoC C&C for the Industroyer malware