
tooling-playground
A collection of small scripts and tools for deobfuscation and malware analysis.

A collection of small scripts and tools for deobfuscation and malware analysis.

Curated Indicators of Compromise and YARA rules from Zscaler ThreatLabz public reports for threat hunting, malware research, and detection…

An extensible, deterministic static‑analysis engine that extracts high‑signal IOCs from PE binaries and text, built for SOC automation and modern…

Zero-dependency CLI scanner for npm/PyPI supply chain compromises. Detects compromised packages in lockfiles and system-level IOCs from attacks like…

Defensive PowerShell tool for static inspection of RAR archives and detection of CVE-2025-8088 path traversal anomalies.

Fast filesystem scanner for CVE-2021-44228

Scanners for Jar files that may be vulnerable to CVE-2021-44228

Automatically create YARA rules from malicious documents.

Collection of some easy of use tools - in powershell.

Fast and accurate AI powered file content types detection

Program for determining types of files for Windows, Linux and MacOS.

Python toolkit for analyzing MS OLE2 and Office documents, extracting VBA macros, detecting exploits, and performing forensic analysis of structured…


Java library to analyse Portable Executable files with a special focus on malware analysis and PE malformation robustness

A malware analysis and classification tool.

Web shell scanner and analyzer.

Native YARA scanner X-Tension for X-Ways Forensics, enabling in-snapshot file scanning with multi-threaded RVS support, report table output, and no…

Detects PowerShell-based malware artifacts from event logs and performs static analysis on PowerShell scripts to identify malicious activity.