Macmod / malkomLinks
Malkom is an extensible and simple similarity graph generator for malware analysis aimed at helping analysts visualize and cluster sets of PE and ELF malware samples.
☆16Updated 2 years ago
Alternatives and similar repositories for malkom
Users that are interested in malkom are comparing it to the libraries listed below
Sorting:
- Volatility 3 plugins to extract a module as complete as possible☆12Updated last year
- Extension functionality for the NightHawk operator client☆27Updated last year
- ☆12Updated 2 years ago
- OMIGOD! OM I GOOD? A free scanner to detect VMs vulnerable to one of the "OMIGOD" vulnerabilities discovered by Wiz's threat research tea…☆18Updated 3 years ago
- Collection of scripts that I created to make my life easier.☆11Updated 4 years ago
- ☆18Updated 4 months ago
- Slides from my talk at the Adversary Village, Defcon 30☆29Updated 2 years ago
- Drakus allows you to monitor the artifacts and domains used in a Red Team exercise to see if they have been uploaded to certain online ma…☆13Updated 4 years ago
- Tricard - Malware Sandbox Fingerprinting☆20Updated last year
- An adaptation of timwhitez's proxycall that uses kernelbase.dll!Beep.☆12Updated last year
- Tool for obtaining information about PPL processes☆17Updated last year
- This repository contains several AMSI bypasses. These bypasses are based on some very nice research that has been put out by some awesome…☆24Updated 2 years ago
- Dump Lsass Memory Using a Reflective Dll☆14Updated 3 years ago
- A cap/pcap packet parser to make life easier when performing stealth/passive reconnaissance.☆21Updated 10 months ago
- ☆18Updated last year
- Progress of learning kernel development☆14Updated 2 years ago
- Malware campaigns and APTs research by BlackArrow☆18Updated 5 years ago
- PoC MSI payload based on ASEC/AhnLab's blog post☆23Updated 2 years ago
- An injector that use PT_LOAD technique☆12Updated 2 years ago
- Automated Persistence and Lateral Movement using GCP Patch Management☆15Updated 2 years ago
- A collection of tools adversaries commonly use in an attack.☆14Updated 6 months ago
- active directory query tool using LDAP Protocol , helps red teamer / penetration testers to validate users credentials , retrieve inform…☆12Updated 5 years ago
- ☆12Updated 4 years ago
- A custom SentinelOne USB scanner.☆18Updated 3 years ago
- powershell script i wrote that can suspend an arbitrary process (with limits)☆20Updated 2 years ago
- Reverse_Shell Implemented in C++ with the ability to bypass sandboxes☆12Updated 4 years ago
- Sources Codes of many Office Malwares☆16Updated 2 years ago
- TL;DR: Mutate a binary to identify potential exploit candidates☆12Updated last year
- My nim learning experiments☆11Updated 2 years ago
- Autopsy Module to analyze Registry Hives☆15Updated 3 years ago