ROPMEMU is a framework to analyze, dissect and decompile complex code-reuse attacks.
created at May 24, 2016, 5:04 p.m.
⭐️ A curated list of awesome forensic analysis tools and resources
created at March 29, 2016, 8:54 p.m.
Adversary tradecraft detection, protection, and hunting
created at March 25, 2016, 11:28 a.m.
FLARE Obfuscated String Solver - Automatically extract obfuscated strings from malware.
created at March 2, 2016, 8:16 p.m.
Advanced usermode anti-anti-debugger. Forked from https://bitbucket.org/NtQuery/scyllahide
created at Jan. 27, 2016, 5:26 a.m.
A curated list of Awesome Threat Intelligence resources
created at Dec. 21, 2015, 11:31 a.m.
A curated list of resources related to Industrial Control System (ICS) security.
created at Dec. 8, 2015, 12:43 p.m.
A framework for receiving and redistributing abuse feeds
created at Nov. 25, 2015, 12:35 p.m.
Limon is a sandbox developed as a research project written in python, which automatically collects, analyzes, and reports on the run time indicators of Linux malware. It allows one to inspect Linux malware before execution, during execution, and after execution (post-mortem analysis) by performing static, dynamic and memory analysis using open source tools
created at Nov. 21, 2015, 8:37 a.m.
Public malware techniques used in the wild: Virtual Machine, Emulation, Debuggers, Sandbox detection.
created at Nov. 12, 2015, 6:35 p.m.