Largest open collection of Android malware samples. Live samples - use them at your peril. Collected from several sources/mailing lists. Contributions are welcome - please create a new directory for every sample type, add a README file and samples in that directory. This repository contains a collection of Android malware samples, which can be used for research, testing, and analysis. The samples are collected from various sources and are made available for the benefit of the security community. Please note that the samples are live and should be used with caution. It is recommended to use a virtual environment or a sandboxed environment to analyze the samples. Contributions are welcome! If you have a new sample to add, please create a new directory for it and add a README file with information about the sample. This repository is maintained by [insert name] and is hosted on [insert hosting platform].
FEATURES
SIMILAR TOOLS
A tool that extracts and deobfuscates strings from malware binaries using advanced static analysis techniques.
Valkyrie is a sophisticated file verdict system that enhances malware detection through behavioral analysis and extensive file feature examination.
A .NET assembly debugger and editor that enables reverse engineering and dynamic analysis of compiled .NET applications without source code access.
Falcon Sandbox is a malware analysis framework that provides in-depth static and dynamic analysis of files, offering hybrid analysis, behavior indicators, and integrations with various security tools.
An open source machine code decompiler that converts binary executables into readable C source code across multiple architectures and file formats.
Joe Sandbox Community provides automated cloud-based malware analysis across multiple OS platforms.
A collaborative malware analysis framework with various features for automated analysis tasks.
Code to prevent a managed .NET debugger/profiler from working.
PINNED

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.