WithSecureLabs / dejectLinks
Memory dump and Sample analysis tool
☆18Updated 8 months ago
Alternatives and similar repositories for deject
Users that are interested in deject are comparing it to the libraries listed below
Sorting:
- Collection of tips, tools, arsenal and techniques I've learned during RE and other CyberSecStuff☆57Updated 2 months ago
- A collection of Vulnerable Windows Drivers☆14Updated 4 years ago
- A repo to house files for our blogposts on blog.nviso.eu☆74Updated 9 months ago
- Help deobfuscate VBScript☆17Updated 3 years ago
- ☆34Updated last year
- Malware Analysis tools☆26Updated last year
- Live memory analysis detecting malware IOCs in processes, modules, handles, tokens, threads, .NET assemblies, memory address space and en…☆43Updated last year
- Memory Scaner☆63Updated 3 years ago
- ☆46Updated last month
- Unpacking tool for the zipExec Crypter☆14Updated 4 years ago
- ☆44Updated last month
- A scanner that files with compromised or untrusted code signing certificates written in python.☆65Updated 2 years ago
- x64 Windows package of the shellcode2exe tool☆14Updated 5 years ago
- A Docker container used to easily compile Nim binaries generated by my tools (NimPackt and NimPlant)☆16Updated 2 years ago
- My malware analysis code snippets☆28Updated 2 years ago
- An evil bit backdoor for iptables☆54Updated 4 years ago
- Identifies metadata of .NET binary files.☆21Updated last year
- ☆22Updated last year
- ☆27Updated last year
- Signature-based detection of malware features based on Windows API call sequences. It's like YARA for sandbox API traces!☆82Updated 2 years ago
- Dumping credentials through windbg and pykd☆41Updated 2 years ago
- bootloaders.io is a curated list of known malicious bootloaders for various operating systems. The project aims to assist security profes…☆67Updated 2 years ago
- Symantec EDR Internals☆29Updated 4 years ago
- Discord as a C2☆49Updated 4 years ago
- QuasarRAT analysis tools and research report☆27Updated last year
- Defeating Anti-Debugging Techniques for Malware Analysis☆13Updated 3 years ago
- Understanding WinRAR Code Execution Vulnerability (CVE-2023-38831)☆40Updated 2 years ago
- This tool parses NTDLL.DLL, extracts all the syscall numbers and helps in making direct syscalls, in order to help evasion.☆15Updated 3 years ago
- Paracosme is a zero-click remote memory corruption exploit that compromises ICONICS Genesis64 which was demonstrated successfully on stag…☆89Updated 2 years ago
- Triaging Windows event logs based on SANS Poster☆42Updated 3 weeks ago