
anticuckoo
A tool to detect and crash Cuckoo Sandbox

A tool to detect and crash Cuckoo Sandbox

IATelligence is a Python script that will extract the IAT of a PE file and request GPT to get more information about the API and the ATT&CK matrix…

idenLib - Library Function Identification [This project is not maintained anymore]

The world's most powerful System Activity Monitor Engine · 一款功能强大的终端行为采集防御开发套件 ~ 旨在帮助EDR、零信任、数据安全、审计管控等终端安全软件可以快速实现产品功能,…

Native multi-arch disassembler & decompiler - PE/ELF/Mach-O, x86/x64/ARM64, Lua scripting, RTTI recovery

Incident Response - Fast suspicious file finder

A modular Python application to pull intelligence about malicious files


MCP-powered reverse engineering platform connecting WinDbg, IDA Pro & x64dbg with 160+ AI-accessible debugging and analysis tools.

AST-based Python code transformation & deobfuscation framework

Static analysis tool that detects malicious dependencies in CI/CD pipelines using pattern matching and AST analysis, with a traffic-light risk…

A radare2 script to parse the gopclntab to facilitate Reverse Engineering Go binaries.

🦅 ZeroScout: The Autonomous Local & Cloud Threat Hunter. Visualize attacks in a live War Room, identify APT groups via Genetic Analysis, and…

Static Malware Analysis of Follina (CVE-2022-30190) from Blue Team Labs Online

Hands-on SOC investigation of CVE-2024-49138 using LetsDefend, VirusTotal, Hybrid Analysis, TrueFort, and ChatGPT.

Automated cross-platform sandbox that detonates suspicious files in isolated VMs/emulators, captures network and memory artifacts, and creates LLM…


RetDec is a retargetable machine-code decompiler based on LLVM.