
binprotect
x64 PE bin2bin obfuscator which doesn't add a section to the binary

x64 PE bin2bin obfuscator which doesn't add a section to the binary

Materials for Windows Malware Analysis training (volume 1)

Obfuscate specific windows apis with different apis

Cosa Nostra, a FOSS graph based malware clusterization toolkit.

Enumerate various traits from Windows processes as an aid to threat hunting

ShowStopper is a tool for helping malware researchers explore and test anti-debug techniques or verify debugger plugins or other solutions that clash…

This is a bash script focus on hardening linux. This is a custom think of windows defender but unlike of their privacy issue. User can feel freedom…

Python demo simulating CVE-2024-3094: a supply chain backdoor in XZ Utils with a trigger-based stealth activation.

A scanner that files with compromised or untrusted code signing certificates written in python.

Scripts for automating malware analysis and reverse engineering workflows in IDA Pro, covering binary inspection, static analysis, and code…

Source code for the book "Black Hat Python" by Justin Seitz. The code has been fully converted to Python 3, reformatted to comply with PEP8 standards…

CryptoLocker is open source files encrypt-er. Crypto is developed in Visual C++. It has features encrypt all file, lock down the system and send keys…

Free educational courses in cybersecurity, reverse engineering, malware analysis, and programming designed to expand access, build practical skills,…

Dynamically convert an unmanaged EXE or DLL file to PIC shellcode by prepending a shellcode stub.

CVE-2023-20052, information leak vulnerability in the DMG file parser of ClamAV

Defense Against the Shai-Hulud Supply Chain Attack

Technical investigation and host containment of a Critical-severity Zero-Click RCE exploit (CVE-2025-21298) using EDR telemetry and static malware…

x64 Dynamic Reverse Engineering Toolkit