Offensive-Panda / MalwareAnalysisLinks
This central repository is crafted for cybersecurity enthusiasts, researchers, and professionals aiming to advance their skills. It offers valuable resources for those focused on analyzing and understanding different types of malware.
☆18Updated 7 months ago
Alternatives and similar repositories for MalwareAnalysis
Users that are interested in MalwareAnalysis are comparing it to the libraries listed below
Sorting:
- ☆17Updated 7 months ago
- Work in progress experiments with reverse shells, AV bypass and extraction of secrets from memory in C☆39Updated 6 years ago
- Scan your computer for known vulnerable and known malicious Windows drivers using loldrivers.io☆87Updated 3 weeks ago
- SRE - Dissecting Malware for Static Analysis & the Complete Command-line Tool☆57Updated last year
- Live memory analysis detecting malware IOCs in processes, modules, handles, tokens, threads, .NET assemblies, memory address space and en…☆43Updated last year
- ☆18Updated last year
- powershell script i wrote that can suspend an arbitrary process (with limits)☆22Updated 2 years ago
- DLL Unlinking from InLoadOrderModuleList, InMemoryOrderModuleList, InInitializationOrderModuleList, and LdrpHashTable☆58Updated 2 years ago
- ☆18Updated 11 months ago
- Make an Linux Kernel rootkit visible again.☆59Updated 10 months ago
- A payload delivery system which embeds payloads in an executable's icon file!☆74Updated last year
- single-threaded event driven sleep obfuscation poc for linux☆37Updated 6 months ago
- Items related to the RedELK workshop given at security conferences☆29Updated 2 years ago
- A collection of PoCs for different injection techniques on Windows!☆47Updated 2 years ago
- A tool for interacting with the Anti-Malware Scan Interface API for pen testing purposes.☆67Updated 2 years ago
- Docker container for running CobaltStrike 4.10☆37Updated last year
- ☆108Updated last year
- .NET tool used to enrich RPC telemetry☆101Updated 6 months ago
- EvtPsst☆55Updated 2 years ago
- Demonstration of Early Bird APC Injection - MITRE ID T1055.004☆35Updated 2 years ago
- Tool for obtaining information about PPL processes☆16Updated last year
- Yet, Another Packer/Loader☆25Updated 2 years ago
- Microsoft Vulnerable Driver Block Lists in CSV and JSON for SIEM lookups☆53Updated 3 months ago
- Extension functionality for the NightHawk operator client☆26Updated 2 years ago
- Windows 10 DLL Injector via Driver utilizing VAD and hiding the loaded driver☆53Updated 2 years ago
- Proof-of-concept modular implant platform leveraging v8☆55Updated 9 months ago
- Reverse Engineering and Debugging Malware☆32Updated 2 years ago
- Parent Process ID Spoofing, coded in CGo.☆23Updated 8 months ago
- ☆39Updated last year
- A C++ tool for process memory scanning & suspicious telemetry generation that attempts to detect a number of malicious techniques used by…☆85Updated last year