- Singapore
- https://findingvulns.blogspot.com/
Stars
Configuration extractors/decryptors for various Windows malware families.
peta909 / vxlang-page
Forked from vxlang/vxlang-pageprotector & obfuscator & code virtualizer
Nidhogg is an all-in-one simple to use windows kernel rootkit.
peta909 / DrvMon
Forked from Fyyre/DrvMonAdvanced driver monitoring utility.
Python Decoders for Common Remote Access Trojans
A fork version of lldbinit https://github.com/gdbinit/lldbinit
An Interactive Binary Patching Plugin for IDA Pro
Triton is a dynamic binary analysis library. Build your own program analysis tools, automate your reverse engineering, perform software verification or just emulate code.
DC3 Malware Configuration Parser (DC3-MWCP) is a framework for parsing configuration information from malware. The information extracted from malware includes items such as addresses, passwords, fi…
This repository contains sample programs that mimick behavior found in real-world malware. The goal is to provide source code that can be compiled and used for learning purposes, without having to …
Programming productivity plugin for IDAPython and C++ development
Some of my publicly available Malware analysis and Reverse engineering.
Implementation of the stream cipher - RC4 (Rivest Cipher 4) using both Python 2.x and 3.x
Thread Stack Spoofing - PoC for an advanced In-Memory evasion technique allowing to better hide injected shellcode's memory allocation from scanners and analysts.
IDA plugin for quickly copying disassembly as encoded hex bytes
IDA Pro plugin which improves work with HexRays decompiler and helps in process of reconstruction structures and classes