abusech / MalwareBazaarLinks
Open platform for sharing confirmed Malware samples
☆34Updated last year
Alternatives and similar repositories for MalwareBazaar
Users that are interested in MalwareBazaar are comparing it to the libraries listed below
Sorting:
- IDA Python scripts☆40Updated 9 months ago
- shared samples from #dailyphish and/or #apt tweets☆41Updated 4 months ago
- ☆41Updated last year
- Embed an executable as a PE resource, drops and launches it in runtime.☆64Updated 4 years ago
- ☆46Updated 2 months ago
- Proof of Concept example for abusing Process Hacker 2 (v2.39.124)☆23Updated last year
- ☆124Updated last year
- SRE - Dissecting Malware for Static Analysis & the Complete Command-line Tool☆57Updated last year
- Vulnerable EDR☆23Updated last year
- Graphical interface for PortEx, a Portable Executable and Malware Analysis Library☆143Updated 7 months ago
- Convert Microsoft Defender Antivirus Signatures (VDM) into YARA rules☆139Updated last week
- MS Office and Windows HTML RCE (CVE-2023-36884) - PoC and exploit☆41Updated 2 years ago
- OFFZONE 2024 Malware Persistence workshop☆22Updated last year
- Windows Win32 Kernel Subsystem☆35Updated 5 months ago
- ☆35Updated 2 years ago
- Proof-of-Concept for CVE-2024-21345☆76Updated last year
- Identifies LOLDrivers that are not blocked by the active HVCI policy — ideal for BYOVD scenarios.☆32Updated 3 weeks ago
- A C++ tool for process memory scanning & suspicious telemetry generation that attempts to detect a number of malicious techniques used by…☆85Updated last year
- One Click Tool to Scan All the Enabled Protection of current Windows NT Kernel☆43Updated 2 years ago
- Standalone Metasploit-like XOR encoder for shellcode☆50Updated last year
- A simple commandline application to automatically decrypt strings from Obfuscator protected binaries☆47Updated last year
- ☆15Updated last year
- CVE-2025-62215 is an Elevation of Privilege (EoP) vulnerability in the Windows Kernel, disclosed in November 2025 and confirmed to be act…☆26Updated 2 months ago
- CVE-2024-30090 - LPE PoC☆107Updated last year
- A class to emulate the behavior of NtQuerySystemInformation when passed the SystemHypervisorDetailInformation information class☆27Updated 2 years ago
- Windows AppLocker Driver (appid.sys) LPE☆72Updated last year
- BYOVD Technique Example using viragt64 driver☆67Updated last year
- Repo with different exploits & PoCs☆66Updated 8 months ago
- ☆58Updated last year
- Repository for the DEF CON 33 talk: Kill Chain Reloaded☆77Updated 5 months ago