struppigel / WisdomForHedgehogsLinks
Knowledge base for reverse engineering and malware analysis
☆11Updated 6 months ago
Alternatives and similar repositories for WisdomForHedgehogs
Users that are interested in WisdomForHedgehogs are comparing it to the libraries listed below
Sorting:
- ☆106Updated last year
- ☆14Updated 2 years ago
- Malware Analysis Exercise Samples and Resources☆44Updated last month
- Rules shared by the community from 100 Days of YARA 2024☆85Updated 6 months ago
- Malware Samples that could be used for teaching students about malware analysis.☆57Updated last year
- Code snips and notes☆137Updated 3 years ago
- ☆115Updated this week
- Repository of Yara Rules☆112Updated 3 months ago
- A golang CLI tool to download malware from a variety of sources.☆148Updated 2 weeks ago
- A Feature Rich Modular Malware Configuration Extraction Utility for MalDuck☆129Updated last year
- Rules Shared by the Community from 100 Days of YARA 2023☆77Updated 2 years ago
- Malware Muncher is a proof-of-concept Python script that utilizes the Frida framework for binary instrumentation and API hooking, enablin…☆46Updated 2 years ago
- Research notes☆126Updated 7 months ago
- Dump quarantined files from Windows Defender☆64Updated 3 years ago
- The FLARE team's open-source library to disassemble Common Intermediate Language (CIL) instructions.☆165Updated 3 weeks ago
- a simple python script to de-obfuscate ABOBUS Batch script obfuscator☆9Updated 6 months ago
- ☆13Updated 2 years ago
- ☆14Updated 2 years ago
- ELFEN: Automated Linux Malware Analysis Sandbox☆126Updated last year
- A collection of modules and scripts to help with analyzing Nim binaries☆76Updated 9 months ago
- Quick analysis focusing on most important of a Malware or a Threat☆41Updated last year
- A specification and style guide for YARA rules☆50Updated last year
- Configuration Extractors for Malware☆108Updated 2 months ago
- GarbageMan is a set of tools for analyzing .NET binaries through heap analysis.☆116Updated 2 years ago
- Signature-based detection of malware features based on Windows API call sequences. It's like YARA for sandbox API traces!☆83Updated 2 years ago
- runsc loads 32/64 bit shellcode (depending on how runsc is compiled) in a way that makes it easy to load in a debugger. This code is base…☆36Updated 2 years ago
- A guide on how to write fast and memory friendly YARA rules☆145Updated 5 months ago
- Virus.xcheck is a Python tool designed to bulk verify the existence of file hashes in the Virus Exchange database and fetch download URLs…☆55Updated 3 months ago
- Powershell sandboxing utility☆19Updated last week
- The Windows Malware Analysis Reversing Core Tools☆95Updated 4 years ago