Tools and techniques for analyzing, reverse-engineering, and understanding malicious software.
Explore 259 curated tools and resources
An AI-powered career platform that automates the creation of cybersecurity job application materials and provides company-specific insights for job seekers.
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.
A cloud-native web application and API security solution that uses contextual AI to protect against known and zero-day threats without signature-based detection.
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.
Wiz Cloud Security Platform is a cloud-native security platform that enables security, dev, and devops to work together in a self-service model, detecting and preventing cloud security threats in real-time.
A project providing open-source YARA rules for malware and malicious file detection
A dataset release policy for the Android Malware Genome Project, requiring authentication and justification for access to the dataset.
Collection of slides, materials, demos, crackmes, and writeups from r2con-2017 conference.
A collection of resources for beginners to learn assembly language.
A collection of Android Fakebank and Tizi samples for analyzing spyware on Android devices.
A semi-automatic tool to generate YARA rules from virus samples.
A free web-based Yara debugger for security analysts to write hunting or detection rules with ease.
angr is a Python 3 library for binary analysis with various capabilities like symbolic execution and decompilation.
A blog post discussing INF-SCT fetch and execute techniques for bypass, evasion, and persistence
A Yara ruleset for detecting PHP shells and other webserver malware.
Powerful debugging tool with extensive features and extensions for memory dump analysis and crash dump analysis.
Ropper is a tool for analyzing binary files and searching for gadgets to build rop chains for different architectures.
Intezer is a cloud-based malware analysis platform that detects and classifies malware using genetic code analysis.