#malware-analysis (30 Repositories)
Ranked open-source repositories tagged with #malware-analysis, scored by pull request acceptance likelihood and maintainer engagement velocity.
22.3%
9.9h
30 repositories tagged #malware-analysis
AdvDebug/Brovan
Brovan is a user-mode x86_64 binary emulator for your malware analysis & reverse engineering.
mandiant/capa
The FLARE team's open-source tool to identify capabilities in executable files.
HyperDbg/HyperDbg
State-of-the-art native debugging tools
MISP/MISP
MISP (core software) - Open Source Threat Intelligence and Sharing Platform
x64dbg/x64dbg
An open-source user mode debugger for Windows. Optimized for reverse engineering and malware analysis.
kevoreilly/CAPEv2
Malware Configuration And Payload Extraction
mandiant/flare-floss
FLARE Obfuscated String Solver - Automatically extract obfuscated strings from malware.
MobSF/Mobile-Security-Framework-MobSF
Mobile Security Framework (MobSF) is an automated, all-in-one mobile application (Android/iOS/Windows) pen-testing, malware analysis and security assessment framework capable of performing static and dynamic analysis.
lief-project/LIEF
LIEF - Library to Instrument Executable Formats (C++, Python, Rust)
mthcht/ThreatIntel-Reports
Raw data from Threat Intelligence Reports with automatic reports collection and keyword search across thousands of reports
horsicq/XAPKDetector
APK/DEX detector for Windows, Linux and MacOS.
horsicq/Nauz-File-Detector
Linker/Compiler/Tool detector for Windows, Linux and MacOS.
binref/refinery
High Octane Triage Analysis
chainguard-dev/malcontent
#supply #chain #attack #detection
H4NM/WhoYouCalling
Records an executable's network activity into a Full Packet Capture file (.pcap) and much more.
miunasu/IDA-Skill
使用skill让 AI Agent 像安全分析师一样分析恶意样本 | AI Agent skill for automated malware analysis using IDA Pro
SitinCloud/Owlyshield
Owlyshield is an EDR framework designed to safeguard vulnerable applications from potential exploitation (C&C, exfiltration and impact).
swwwolf/wdbgark
WinDBG Anti-RootKit Extension
Spacial/awesome-csirt
Awesome CSIRT is an curated list of links and resources in security and CSIRT daily activities.
vmkspv/lenspect
A lightweight security threat scanner intended to make malware detection more accessible and efficient.
CalebFenton/simplify
Android virtual machine and deobfuscator
f0wl/MalwareLab_VM-Setup
Setup scripts for my Malware Analysis VMs
bb1nfosec/Information-Security-Tasks
This repository is created only for infosec professionals whom work day to day basis to equip ourself with uptodate skillset, We can daily contribute daily one hour for day to day tasks and work on problem statements daily, Please contribute by providing problem statements and solutions
mandiant/VM-Packages
Chocolatey packages supporting the analysis environment projects FLARE-VM & Commando VM.
keowu/Ryujin
Ryūjin Protector - Is a Intel Arch - BIN2BIN - PE Obfuscation/Protection/DRM tool
mohitmishra786/reversingBits
A comprehensive collection of cheatsheets for reverse engineering, binary analysis, and assembly programming tools. This repository serves as a one-stop reference for security researchers, reverse engineers, and low-level programmers.
CERT-Polska/karton
Distributed malware processing framework based on Python, Redis and S3.
zero2504/EDR-GhostLocker
AppLocker-Based EDR Neutralization
MarioVilas/winappdbg
WinAppDbg Debugger
qeeqbox/honeypots
30 different honeypots in one package! (dhcp, dns, elastic, ftp, http proxy, https proxy, http, https, imap, ipp, irc, ldap, memcache, mssql, mysql, ntp, oracle, pjl, pop3, postgres, rdp, redis, sip, smb, smtp, snmp, socks5, ssh, telnet, vnc)