
CVE-2025-0411-MoTW-PoC
Proof-of-concept and technical analysis of CVE-2025-0411, a 7-Zip Mark-of-the-Web bypass vulnerability exploited in SmokeLoader campaigns, with…

Proof-of-concept and technical analysis of CVE-2025-0411, a 7-Zip Mark-of-the-Web bypass vulnerability exploited in SmokeLoader campaigns, with…

Malware Mutation Using Reinforcement Learning and Generative Adversarial Networks

Clusters and elements to attach to MISP events or attributes (like threat actors)

Compares Windows archiver support for Mark of the Web propagation, helping teams assess which tools preserve MOTW and mitigate macro-based malware…

Hands-on DEFCON workshop materials for killing and silencing EDR agents: lab setup, BYOVD, custom C/C++ evasion tooling, and reverse engineering.

Lockbit3.0 Microsoft Defender MpClient.dll DLL Hijacking PoC

Security scanner for AI/ML model files. Detects malicious code, backdoors, and vulnerabilities before deployment

a small wiper malware programmed in c#

Create Anti-Copy DRM Malware

PoC MSI payload based on ASEC/AhnLab's blog post

Different methods to detect a virtualized environment or potential debugging

RustyWater represents the main payload and the backbone of the entire adversarial operation in Static Kitten group attacks.

Technical webinars on reverse engineering, malware analysis, and software protection.