eversinc33 / TriageMCPLinks
Vibe Malware Triage - MCP server for static PE analysis.
☆74Updated 2 months ago
Alternatives and similar repositories for TriageMCP
Users that are interested in TriageMCP are comparing it to the libraries listed below
Sorting:
- Hollowise is a tool that implements process hollowing and PPID (Parent Process ID) spoofing techniques for masking a legitimate analysis …☆39Updated 11 months ago
- Scan files for potential threats while leveraging AMSI (Antimalware Scan Interface) and Windows Defender. By isolating malicious content.☆36Updated last year
- POC of GITHUB simple C2 in rust☆52Updated 6 months ago
- ☆108Updated last year
- AutoRMM is a collection of scripts and instructions we are organizing, to test delivery mechanisms for RMM and screen sharing tools, alo…☆91Updated 6 months ago
- A simple POC to expose Mythic as a MCP server☆73Updated 10 months ago
- A Payload Analysis Framework☆115Updated 4 months ago
- Comprehensive Windows Syscall Extraction & Analysis Framework☆161Updated 5 months ago
- .NET tool used to enrich RPC telemetry☆101Updated 2 weeks ago
- Blog/Journal on how to backdoor VSCode extensions☆76Updated 6 months ago
- A proof-of-concept shellcode loader that leverages AI/ML face recognition models to verify the identity of a user on a target system☆40Updated last year
- Windows Administrator level Implant.☆50Updated last year
- ☆39Updated last year
- ☆60Updated 9 months ago
- Commandline spoofing on Windows☆93Updated 2 months ago
- BeaconatorC2 is a framework for red teaming and adversarial emulation, providing a full-featured management interface, along with a catal…☆92Updated 3 weeks ago
- lib-nosa is a minimalist C library designed to facilitate socket connections through AFD driver IOCTL operations on Windows.☆120Updated last year
- This is practice VM for malware development☆179Updated 2 months ago
- Persist like a Dodder☆67Updated 8 months ago
- Exfiltrate data over audio output from remote desktop sessions - Covert channel PoC☆64Updated last year
- Microsoft Vulnerable Driver Block Lists in CSV and JSON for SIEM lookups☆53Updated 4 months ago
- ☆70Updated 2 years ago
- Lena's scripts/code/resources for malware analysis☆26Updated last year
- Situational Awareness script to identify how and where to run implants☆67Updated last year
- A tool to convert windows registry export files into windows hive files that can be used to replace NTUSER.MAN☆74Updated 2 weeks ago
- ☆72Updated last year
- Aplos an extremely simple fuzzer for Windows binaries.☆68Updated 11 months ago
- AI-based implant feature☆25Updated 9 months ago
- Sh3ller is a lightweight C2 framework in its simplest form.☆32Updated 5 months ago
- Slides and resources from MCTTP 2025 Talk☆66Updated 3 months ago