
awesome-threat-intelligence
Curated directory of threat intelligence sources, feeds, frameworks, tools, and research for SOC/CTI teams—covering IOCs, STIX/TAXII formats, and…

Curated directory of threat intelligence sources, feeds, frameworks, tools, and research for SOC/CTI teams—covering IOCs, STIX/TAXII formats, and…

Drltrace is a library calls tracer for Windows and Linux applications.

Golang bindings for PE-sieve

ExportHider: Generating Export Table during Runtime to Hide the Exported Functions from the DLL File.

Dynamically convert an unmanaged EXE or DLL file to PIC shellcode by prepending a shellcode stub.

Scriptable binary emulation framework integrating IDA Pro/Radare2 with Unicorn engine for automated malware analysis, string decryption, and code…

Scripts to analyze conflicker worm which exploits famous netapi vulnerability (CVE-2008-4250) i.e MS08-067

A comprehensive Python-based security tool for file scanning, malware detection, and analysis in an ever-evolving cyber landscape.

Program for determining types of files for Windows, Linux and MacOS.

Simulate the behavior of AV/EDR for malware development training.

A collection of scripts for dealing with Cobalt Strike beacons in Python

A collection of tools for dealing with TrickBot

Collection of scripts for malware analysis, deobfuscation, and configuration extraction. Supports static analysis, unpacking, shellcode conversion,…

GarbageMan is a set of tools for analyzing .NET binaries through heap analysis.

Python toolkit for malware analysis, designed to inspect suspicious files and extract indicators of compromise for security investigations.

A proof of concept for CVE-2022-30190 (Follina).

Results of retrohunt for files matching YARA rules from https://github.com/AmgdGocha/Detection-Rules/blob/main/CVE-2023-21716.yar