Malware samples, analysis exercises and other interesting resources.
☆1,613Jan 13, 2024Updated 2 years ago
Alternatives and similar repositories for malware-samples
Users that are interested in malware-samples are comparing it to the libraries listed below
Sorting:
- A collection of malware samples and relevant dissection information, most probably referenced from http://blog.inquest.net☆932Mar 26, 2024Updated last year
- Malwoverview is a rapid response tool used to gather intelligence information from VirusTotal, Hybrid Analysis, URLHaus, Polyswarm, Malsh…☆3,548Jan 20, 2026Updated last month
- This repository contains sample programs that mimick behavior found in real-world malware. The goal is to provide source code that can be…☆684Jul 6, 2024Updated last year
- Materials for Windows Malware Analysis training (volume 1)☆2,026Jul 1, 2024Updated last year
- A collection of malware samples caught by several honeypots i manage☆1,792Sep 15, 2021Updated 4 years ago
- Windows Events Attack Samples☆2,515Jan 24, 2023Updated 3 years ago
- Some of my publicly available Malware analysis and Reverse engineering.☆932Jun 3, 2024Updated last year
- APT-Hunter is Threat Hunting tool for windows event logs which made by purple team mindset to provide detect APT movements hidden in the …☆1,400Nov 7, 2024Updated last year
- The FLARE team's open-source tool to identify capabilities in executable files.☆5,844Updated this week
- Extract and Deobfuscate XLM macros (a.k.a Excel 4.0 Macros)☆585May 5, 2024Updated last year
- This repository contains sample programs written primarily in C and C++ for learning native code reverse engineering.☆738Nov 30, 2025Updated 3 months ago
- A repository of LIVE malwares for your own joy and pleasure. theZoo is a project created to make the possibility of malware analysis open…☆12,735Nov 19, 2025Updated 3 months ago
- DRAKVUF Sandbox - automated hypervisor-level malware analysis system☆1,266Feb 20, 2026Updated last week
- Scans a given process. Recognizes and dumps a variety of potentially malicious implants (replaced/injected PEs, shellcodes, hooks, in-mem…☆3,562Oct 31, 2025Updated 4 months ago
- A list of cyber-chef recipes and curated links☆2,186Jun 14, 2024Updated last year
- Malware sample library.☆593Nov 21, 2023Updated 2 years ago
- ☆1,072May 18, 2024Updated last year
- A community-driven, open-source project to share detection logic, adversary tradecraft and resources to make detection development more e…☆4,486Jan 12, 2026Updated last month
- Bringing you the best of the worst files on the Internet.☆350Apr 16, 2021Updated 4 years ago
- Analysis of malware and Cyber Threat Intel of APT and cybercriminals groups☆723Dec 26, 2022Updated 3 years ago
- Defund the Police.☆13,472Jun 7, 2024Updated last year
- Scans all running processes. Recognizes and dumps a variety of potentially malicious implants (replaced/implanted PEs, shellcodes, hooks,…☆2,313Oct 31, 2025Updated 4 months ago
- A not so awesome list of malware gems for aspiring malware analysts☆829Feb 7, 2023Updated 3 years ago
- A toolset to make a system look as if it was the victim of an APT attack☆2,715Sep 23, 2025Updated 5 months ago
- Malware Configuration And Payload Extraction☆3,031Updated this week
- evasion technique to defeat and divert detection and prevention of security products (AV/EDR/XDR)☆1,498Dec 21, 2023Updated 2 years ago
- Interesting APT Report Collection And Some Special IOCs☆2,915Updated this week
- Educational, CTF-styled labs for individuals interested in Memory Forensics☆1,831Mar 8, 2021Updated 4 years ago
- Labs for Practical Malware Analysis & Triage☆1,080Updated this week
- Automate the creation of a lab environment complete with security tooling and logging best practices☆4,906Jul 6, 2024Updated last year
- Sysmon event simulation utility which can be used to simulate the attacks to generate the Sysmon Event logs for testing the EDR detection…☆863Jan 20, 2022Updated 4 years ago
- Simple (relatively) things allowing you to dig a bit deeper than usual.☆3,483Feb 16, 2026Updated last week
- Windows kernel and user mode emulation.☆1,860Updated this week
- ReversingLabs YARA Rules☆898Nov 3, 2025Updated 3 months ago
- Re-play Security Events☆1,723Mar 20, 2024Updated last year
- A workshop about Malware Development☆1,764Jun 2, 2023Updated 2 years ago
- Collection of Event ID ressources useful for Digital Forensics and Incident Response☆643Jun 19, 2024Updated last year
- Rapidly Search and Hunt through Windows Forensic Artefacts☆3,452Feb 14, 2026Updated 2 weeks ago
- A collection of software installations scripts for Windows systems that allows you to easily setup and maintain a reverse engineering env…☆8,378Dec 23, 2025Updated 2 months ago