Free educational courses in reverse engineering, malware analysis, and programming
Anomaly based Malware Detection using Machine Learning (PE and URL)
Notes and IoCs of fresh malware
Collection of malware persistence and hunting information. Be a persistent persistence hunter!
Code written as part of our various malware investigations
This repository contains 130 malware and ransomware samples for research and analysis purposes.
My projects to understand malware development and detection. Use responsibly. I'm not responsible if you cause unauthorised damage to anyone…
Personal research and publication on malware families
My new malware database, the old one is now archived and all my new malwares will be uploaded here instead. As always, this is made for educ…
MalwareDB: bookkeeping for malware, goodware, and unknown files with relationship discovery
This repository contains various snippets I use in my malware, command and control servers, payloads, and much more. Hopefully it can help y…
Malware hashes for open source projects.
repository of tools & resources of the MMD team
Malwoverview is a first response tool for threat hunting across VirusTotal, Hybrid Analysis, URLHaus, Polyswarm, Malshare, Alien Vault, Malp…
Mass static malware analysis tool
Implementation of the famous Image Manipulation\Forgery Detector "ManTraNet" in Pytorch
MAPS cloud scanner and response parser for Microsoft Defender research.
MasterParser is a powerful DFIR tool designed for analyzing and parsing Linux logs
MCAntiMalware MCAntiMalware is an Anti-Malware program which detects over 1000 malicious plugins and runs 24/7 for constant protection…
Wireshark-like forensic analysis for Model Context Protocol communications Capture, inspect, and investigate all HTTP requests and response…
MCP server for VirusTotal API — analyze URLs, files, IPs, and domains with comprehensive security reports, relationship analysis, and pagina…
A curated list of resources for DFIR through Microsoft Defender for Endpoint leveraging kusto queries, powershell scripts, tools such as KAP…
An extensible, end-to-end encrypted reverse shell that works across networks without port forwarding.
A collection of PowerShell modules designed for artifact gathering and reconnaisance of Windows-based endpoints.