
RedLine-Stealer-C2-Defender-Bypass-Payload-Analysis
"Reverse engineering analysis of RedLine Stealer, a .NET-based info-stealer that uses C2 domains (198.46.86.63, tempuri.org), Windows Defender…

"Reverse engineering analysis of RedLine Stealer, a .NET-based info-stealer that uses C2 domains (198.46.86.63, tempuri.org), Windows Defender…

DEFCON 30 Mainframe buffer overlow workshop container

A decompiler-agnostic plugin for interacting with AI in your decompiler. GPT-4, Claude, and local models supported!


This is a little plugin to copy disassembly in a way that is usable in YARA rules!


Set of scripts to deal with Cisco ASA firmware [pack/unpack etc.]

Heap analysis tooling for dlmalloc

libtalloc is a python script for use with GDB that can be used to analyse the "trivial allocator" (talloc)


A lightweight dynamic instrumentation library

Python Decoders for Common Remote Access Trojans

Weak MySQL database root password in LaborOfficeFree affects version 19.10. This vulnerability allows an attacker to calculate the root password of…


Scripts to analyze conflicker worm which exploits famous netapi vulnerability (CVE-2008-4250) i.e MS08-067

Materials for Windows Malware Analysis training (volume 1)