


Themida Devirt Results


a PE Loader and Windows API tracer. Useful in malware analysis.


Educational Linux kernel rootkit PoC exploring DKOM, syscall hooking, stealth, observability and defensive detection

A post-processing script for TinyTracer

Golang bindings for PE-sieve

Generate bulk YARA rules from YAML input

YARA Rule Strings Statistics Calculator and Malware Research Helper

Offensive & defensive Linux kernel security research focused on rootkit behavior, observable artifacts and detection.

Kratos is a high-performance Windows File System Minifilter driver designed to detect, block, and permanently immunize






Detection reverse shell and kill it before trying shell.