eversinc33 / TriageMCPLinks
Vibe Malware Triage - MCP server for static PE analysis.
☆74Updated 2 months ago
Alternatives and similar repositories for TriageMCP
Users that are interested in TriageMCP are comparing it to the libraries listed below
Sorting:
- Hollowise is a tool that implements process hollowing and PPID (Parent Process ID) spoofing techniques for masking a legitimate analysis …☆39Updated 11 months ago
- ☆108Updated last year
- Scan files for potential threats while leveraging AMSI (Antimalware Scan Interface) and Windows Defender. By isolating malicious content.☆36Updated last year
- A Payload Analysis Framework☆114Updated 3 months ago
- Comprehensive Windows Syscall Extraction & Analysis Framework☆160Updated 5 months ago
- ☆72Updated last year
- Lena's scripts/code/resources for malware analysis☆26Updated last year
- POC of GITHUB simple C2 in rust☆52Updated 6 months ago
- ☆39Updated last year
- .NET tool used to enrich RPC telemetry☆101Updated last week
- lib-nosa is a minimalist C library designed to facilitate socket connections through AFD driver IOCTL operations on Windows.☆120Updated last year
- Aplos an extremely simple fuzzer for Windows binaries.☆68Updated 11 months ago
- ☆60Updated 9 months ago
- Version 2 - A modern 64-bit position independent meterpreter and Sliver compatible reverse_TCP Staging Shellcode based on Cracked5piders …☆103Updated 10 months ago
- Windows Administrator level Implant.☆50Updated last year
- Remote Code Execution via Use-After-Free in JScript.dll (CVE-2025-30397)☆69Updated 8 months ago
- AutoRMM is a collection of scripts and instructions we are organizing, to test delivery mechanisms for RMM and screen sharing tools, alo…☆91Updated 6 months ago
- This repository is meant to catalog network and host artifacts associated with various EDR products "shell" and response functionalities.☆92Updated last year
- Blog/Journal on how to backdoor VSCode extensions☆76Updated 6 months ago
- A tool to convert windows registry export files into windows hive files that can be used to replace NTUSER.MAN☆42Updated last week
- This is practice VM for malware development☆179Updated 2 months ago
- A simple POC to expose Mythic as a MCP server☆73Updated 10 months ago
- Persist like a Dodder☆67Updated 8 months ago
- Make an Linux Kernel rootkit visible again.☆59Updated 11 months ago
- ☆122Updated last month
- A library and a set of tools for exploiting and communicating with Google's Quick Share devices.☆47Updated 10 months ago
- BSides Prishtina 2024 Malware Development and Persistence workshop☆124Updated last month
- Ghosting-AMSI☆18Updated 9 months ago
- Slides and resources from MCTTP 2025 Talk☆66Updated 3 months ago
- Microsoft Vulnerable Driver Block Lists in CSV and JSON for SIEM lookups☆53Updated 4 months ago