Research notes
☆134Apr 14, 2026Updated last month
Alternatives and similar repositories for research
Users that are interested in research are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Assortment of hashing algorithms used in malware☆398Feb 8, 2026Updated 3 months ago
- Code snips and notes☆141Mar 10, 2022Updated 4 years ago
- ☆13Aug 8, 2022Updated 3 years ago
- Ghidra plugin for HashDB☆21Oct 11, 2023Updated 2 years ago
- The best theme for x64dbg!☆88Aug 5, 2022Updated 3 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- TrashDBG the world's worse debugger☆23Feb 17, 2022Updated 4 years ago
- aggregated repo for all conferences and talks I am giving☆17Oct 30, 2021Updated 4 years ago
- ☆27Feb 6, 2022Updated 4 years ago
- Notes on using the Python bindings for the Unicorn Engine☆86Feb 14, 2020Updated 6 years ago
- Capture. Detonate. Collect☆14Sep 20, 2024Updated last year
- Community Detection Signature Build and Distribution Pipeline for YARA, Suricata, Snort and Sigma☆27Jun 20, 2023Updated 2 years ago
- WTF are these binaries doing?! A list of benign applications that mimic malicious behavior.☆171Mar 30, 2025Updated last year
- HashDB API hash lookup plugin for IDA Pro☆358May 5, 2026Updated 2 weeks ago
- UnpacMe IDA Byte Search☆29Nov 20, 2023Updated 2 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Chocolatey packages supporting the analysis environment projects FLARE-VM & Commando VM.☆230May 13, 2026Updated last week
- ☆14May 16, 2023Updated 3 years ago
- IDA Python deobfuscation script for ConfuserEx binaries☆35Sep 15, 2022Updated 3 years ago
- An easy-to-use library for emulating memory dumps. Useful for malware analysis (config extraction, unpacking) and dynamic analysis in gen…☆862Feb 2, 2024Updated 2 years ago
- ☆77Nov 30, 2023Updated 2 years ago
- Some of my publicly available Malware analysis and Reverse engineering.☆952Jun 3, 2024Updated last year
- A YARA rules repository continuously updated for monitoring the old and new threats from articles, incidents responses ...☆141Nov 19, 2023Updated 2 years ago
- Converts exported results of CAPA tool from .json format to another formats supporting by different tools.☆22Feb 15, 2022Updated 4 years ago
- Adding a little tay to IDA☆53Jan 28, 2024Updated 2 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- FLARE Team's Binary Navigator☆319May 8, 2026Updated 2 weeks ago
- quASAR: ASAR manipulation made easy☆39Sep 7, 2022Updated 3 years ago
- What makes it page☆17Aug 24, 2022Updated 3 years ago
- High Octane Triage Analysis☆843May 14, 2026Updated last week
- Reference list for my Ransomware exploitation research. Lists current DLLs I have seen to date that some ransomware search for, which I h…☆11Jul 16, 2022Updated 3 years ago
- Moneta is a live usermode memory analysis tool for Windows with the capability to detect malware IOCs☆826Mar 16, 2024Updated 2 years ago
- Unpacker for donut shellcode☆22Jun 20, 2020Updated 5 years ago
- Collection of Malware Lures☆23Oct 8, 2021Updated 4 years ago
- Code snippets for Qiling Tutorials☆21Aug 22, 2020Updated 5 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Automatically rebuild Import Address Table for dumped PE file. With python bindings!☆122Jan 25, 2019Updated 7 years ago
- ☆41Apr 5, 2025Updated last year
- Repo for The Crown: Exploratory Analysis of Nim Malware DEF CON 615 talk☆46Jan 23, 2022Updated 4 years ago
- Golang bindings for PE-sieve☆42Nov 11, 2023Updated 2 years ago
- Dynamic unpacker based on PE-sieve☆813Apr 14, 2026Updated last month
- Notion as a platform for offensive operations☆1,179May 21, 2023Updated 3 years ago
- ☆13Oct 29, 2022Updated 3 years ago