For educational purposes only, samples of ransomware/wiper trojans including screenshots/ransom-notes.
☆534Mar 21, 2026Updated 4 months ago
Alternatives and similar repositories for Ransomware-Database
Users that are interested in Ransomware-Database are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- For educational purposes only, exhaustive samples of 500+ classic/modern trojan builders including screenshots.☆4,113Updated this week
- Malware Database that I put malware into. NOT RESPONSIBLE FOR DAMAGES!☆55Jul 6, 2026Updated 2 weeks ago
- Tools I used when creating Ultimate RAT Collection.☆18Jun 27, 2026Updated 3 weeks ago
- ☆14Sep 10, 2025Updated 10 months ago
- Just another malware database.☆65Sep 14, 2025Updated 10 months ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- A self-hosted sandbox for red teams to test payloads against modern detection before deployment. MCP integration lets an LLM agent drive …☆1,488May 5, 2026Updated 2 months ago
- ☆166Jun 12, 2025Updated last year
- This repository contains detailed adversary simulation APT campaigns targeting various critical sectors. Each simulation includes custom …☆1,095Jul 13, 2026Updated last week
- Centralized resource for listing and organizing known injection techniques and POCs☆709Feb 1, 2026Updated 5 months ago
- AdaptixC2 is a highly modular advanced redteam toolkit☆3,386Updated this week
- Attempting to Hook LSASS APIs to Retrieve Plaintext Credentials☆55May 12, 2025Updated last year
- Sanctum is an experimental proof-of-concept EDR, designed to detect modern malware techniques, above and beyond the capabilities of antiv…☆566Mar 24, 2026Updated 3 months ago
- Intel 64/Windows low-level experiments☆105Jun 7, 2026Updated last month
- ☆31Feb 28, 2025Updated last year
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- The dragon in the dark. A red team post exploitation framework for testing security controls during red team assessments.☆508Mar 15, 2026Updated 4 months ago
- APT Emulation tool to exfiltrate sensitive .docx, .pptx, .xlsx, .pdf files☆101Apr 2, 2025Updated last year
- ZigStrike, a powerful Payload Delivery Pipeline developed in Zig, offering a variety of injection techniques and anti-sandbox features.☆527Mar 7, 2026Updated 4 months ago
- A small experiment on assigning a processes threads a specific CPU and then blocking it with a high priority thread☆33Sep 24, 2025Updated 9 months ago
- Tool designed to exfiltrate OneDrive Business OCR Data☆128Jan 27, 2025Updated last year
- Pack/Encrypt/Obfuscate ELF + SHELL scripts☆456Apr 11, 2026Updated 3 months ago
- Shellcode injection using the Windows Debugging API☆183Jan 4, 2026Updated 6 months ago
- Windows rootkit designed to work with BYOVD exploits☆224Jan 18, 2025Updated last year
- Hooking KPRCB IdlePreselect function to gain execution inside PID 0.☆81Apr 13, 2025Updated last year
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Modern security products (CrowdStrike, Bitdefender, SentinelOne, etc.) hook the nLoadImage function inside clr.dll to intercept and scan …☆216Dec 8, 2025Updated 7 months ago
- Free educational content on reverse engineering and malware analysis from the FLARE team☆1,363Mar 31, 2026Updated 3 months ago
- Dynamic shellcode loader with sophisticated evasion capabilities☆342Oct 1, 2025Updated 9 months ago
- Slides for COM Hijacking AV/EDR Talk on 38c3☆75Jan 3, 2025Updated last year
- ☆47Nov 10, 2025Updated 8 months ago
- BOF that finds all the Nt* system call stubs within NTDLL and overwrites with clean syscall stubs (user land hook evasion)☆219Feb 6, 2025Updated last year
- Smuggling C2 comms through links previews☆18Jun 17, 2026Updated last month
- A .NET assembly tracer using Harmony for runtime method interception.☆50Oct 24, 2025Updated 8 months ago
- The samples referenced in my book, Evasive Malware (No starch Press)☆62Feb 20, 2026Updated 5 months ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Windows Application Attack Surface Analyzer☆26Feb 22, 2024Updated 2 years ago
- A resource containing all the tools each ransomware gangs uses☆1,419Jun 21, 2026Updated last month
- Malleable C2 is a domain specific language to redefine indicators in Beacon's communication. This repository is a collection of Malleable…☆33Mar 28, 2026Updated 3 months ago
- EDR-Freeze is a tool that puts a process of EDR, AntiMalware into a coma state.☆857May 23, 2026Updated last month
- Bear C2 is a compilation of C2 scripts, payloads, and stagers used in simulated attacks by Russian APT groups, Bear features a variety of…☆527Jun 9, 2026Updated last month
- EDR-Redir : a tool used to redirect the EDR's folder to another location.☆236May 23, 2026Updated last month
- Windows protocol library, including SMB and RPC implementations, among others.☆805Jul 14, 2026Updated last week