n1ght-w0lf / MalwareAnalysis
My malware analysis code snippets
☆27Updated last year
Alternatives and similar repositories for MalwareAnalysis:
Users that are interested in MalwareAnalysis are comparing it to the libraries listed below
- Defeating Anti-Debugging Techniques for Malware Analysis☆13Updated 2 years ago
- Progress of learning kernel development☆14Updated 2 years ago
- ☆18Updated 3 months ago
- ☆22Updated 10 months ago
- Writing Your Own Ticket to the Cloud Like APT: A Deep-dive to AD FS Attacks, Detections, and Mitigations☆12Updated 2 years ago
- Code snippets for Qiling Tutorials☆20Updated 4 years ago
- ☆12Updated 2 years ago
- ☆27Updated 2 years ago
- x64 Windows package of the shellcode2exe tool☆14Updated 4 years ago
- A Docker container used to easily compile Nim binaries generated by my tools (NimPackt and NimPlant)☆15Updated last year
- Identifies metadata of .NET binary files.☆21Updated last year
- ☆28Updated 4 months ago
- ☆26Updated 4 months ago
- A collection of my presentation materials.☆16Updated 11 months ago
- ☆25Updated 5 months ago
- This tool parses NTDLL.DLL, extracts all the syscall numbers and helps in making direct syscalls, in order to help evasion.☆15Updated 2 years ago
- Extension functionality for the NightHawk operator client☆27Updated last year
- PoC MSI payload based on ASEC/AhnLab's blog post☆23Updated 2 years ago
- Just another useless C2 occupying space in some HDD somewhere.☆20Updated last year
- Rapidly building a Windows 10 system to use for dynamic malware analysis (sandbox), sending data to Elastic Cloud.☆48Updated last year
- This repository contains several AMSI bypasses. These bypasses are based on some very nice research that has been put out by some awesome…☆23Updated 2 years ago
- An injector that use PT_LOAD technique☆12Updated 2 years ago
- ☆23Updated 3 years ago
- Tricard - Malware Sandbox Fingerprinting☆20Updated last year
- Slides from my talk at the Adversary Village, Defcon 30☆29Updated 2 years ago
- A collection of Vulnerable Windows Drivers☆15Updated 3 years ago
- Static Decryptor for IcedID Malware☆18Updated 2 years ago
- ☆18Updated last year
- Golang bindings for PE-sieve☆42Updated last year
- Malware Analysis tools☆26Updated 6 months ago