
Quick-Analysis
Provides rapid triage and summarization of malware samples and threat indicators, highlighting key behavioral and contextual details for analysts.

Provides rapid triage and summarization of malware samples and threat indicators, highlighting key behavioral and contextual details for analysts.

Cowrie SSH/Telnet Honeypot https://docs.cowrie.org/

Botnet command & control monitor

Virus Total API Maltego Transform Set For Canari

DGA Domain Detection using Bigram Frequency Analysis

YARA Rule Strings Statistics Calculator and Malware Research Helper

Educational analysis of the Log4Shell (CVE-2021-44228) vulnerability, detailing its exploitation in a cryptocurrency mining campaign with IoCs, MITRE…

Threat intel observatory aggregating CISA KEV, ThreatFox, URLhaus, and MalwareBazaar feeds with search, change tracking, and STIX/CSV/JSONL export.

Reverse engineering analysis of Dropper GCleaner, a malware that uses a resilient C2 infrastructure, kernel driver loading, PowerShell/Conhost…

Proof-of-concept and technical analysis of CVE-2025-0411, a 7-Zip Mark-of-the-Web bypass vulnerability exploited in SmokeLoader campaigns, with…

Curated index of incident response and DFIR tools, including memory and disk forensics, evidence collection, log analysis, playbooks, and educational…

Find, verify, and analyze leaked credentials

This Repository Talks about the Follina MSDT from Defender Perspective

Perform file-based malware scan on your on-prem servers with AWS

Collect, Process, and Hunt with host based data from MacOS, Windows, and Linux

FLARE floss applied to all unpacked+dumped samples in Malpedia, pre-processed for further use.

Analysis of malware found on a server compromised via CVE-2025-55182, including obfuscated dropper, C2 communication, persistence mechanisms, and…

JA4+ is a suite of network fingerprinting standards