
visual-forensic-steganography
Browser-based tool for visual steganography detection via LSB analysis on digital images, enabling forensic examination and stegomalware…

Browser-based tool for visual steganography detection via LSB analysis on digital images, enabling forensic examination and stegomalware…

An Interactive Binary Patching Plugin for IDA Pro

SHAREM is a shellcode analysis framework, capable of emulating more than 45,000 WinAPIs and virutally all Windows syscalls. It also contains its own…

This repository contains the complete record of my three-year research journey, covering the project from foundational concepts to advanced-level…

The Multiplatform Linux Sandbox

x64 Assembly injection engine using SROP and Zero-Copy Injection to bypass EDR/XDR and kernel monitors. Delivers XOR-encrypted payloads with minimal…

A list of covert channels and steganography/steganalysis resources (books, papers & tools)

IoCs and detection rules for the Notepad++ supply chain attack (CVE-2025-15556) — Lotus Blossom APT, June–December 2025. Includes Falcon LogScale…

Python source code auditing and static analysis on a large scale


Decrypts Covenant C2 communications by extracting RSA private keys from minidumps, recovering AES session keys, and converting network captures to…

Detect CVE-2025-54313 eslint-config-prettier supply chain attack IOCs on Windows

C# wrapper for ETW that serializes kernel and user-mode event data to JSON for threat hunting, malware analysis, and incident response, with Yara…

Anteater - CI/CD Gate Check Framework

KittyStager is a simple stage 0 C2. It is made of a web server to host the shellcode and an implant, called kitten. The purpose of this project is to…

The 100 Days of YARA Challenge to write YARA rules consistently

Cross-platform library to parse, modify, and abstract ELF, PE, and MachO executable formats. Supports C++, Python, and Rust APIs with disassembler,…

Tool for leaking and bypassing Android malware detection system