Malware-analysis

Verified open-source repositories and technical documentation formatted for LLM context windows and autonomous AI coding agents (18 repositories indexed).

An open-source user mode debugger for Windows. Optimized for reverse engineering and malware analysis.

49,125 GitHub

817 structured cybersecurity skills for AI agents · Mapped to 6 frameworks: MITRE ATT&CK, NIST CSF 2.0, MITRE ATLAS, D3FEND, NIST AI RMF & MITRE F3 (Fight Fraud) · agentskills.io standard · Works with Claude Code, GitHub Copilot, Codex CLI, Cursor, Gemini CLI & 20+ platforms · 29 security domains · Apache 2.0

27,520 GitHub

Mobile Security Framework (MobSF) is an automated, all-in-one mobile application (Android/iOS/Windows) pen-testing, malware analysis and security assessment framework capable of performing static and dynamic analysis.

21,586 GitHub

A repository of LIVE malwares for your own joy and pleasure. theZoo is a project created to make the possibility of malware analysis open and available to the public.

12,985 GitHub

A powerful and open-source toolkit for hackers and security automation - 安全行业从业者自研开源扫描器合辑

8,963 GitHub

flare-vm

PowerShell Doc

A collection of software installations scripts for Windows systems that allows you to easily setup and maintain a reverse engineering environment on a VM.

8,785 GitHub

gef

Python Doc

GEF (GDB Enhanced Features) - a modern experience for GDB with advanced debugging capabilities for exploit devs & reverse engineers on Linux

8,148 GitHub

MISP (core software) - Open Source Threat Intelligence and Sharing Platform

6,273 GitHub

capa

Python Doc

The FLARE team's open-source tool to identify capabilities in executable files.

5,992 GitHub

LIEF - Library to Instrument Executable Formats (C++, Python, Rust)

5,407 GitHub

the fastest and most powerful android decompiler(native tool working without Java VM) for the APK, DEX, ODEX, OAT, JAR, AAR, and CLASS file. which supports malicious behavior detection, privacy leaking detection, vulnerability detection, path solving, packer identification, variable tracking, deobfuscation, python&java scripts, device memory extraction, data decryption, and encryption, etc.

4,748 GitHub

FLARE Obfuscated String Solver - Automatically extract obfuscated strings from malware.

3,969 GitHub

Scans all running processes. Recognizes and dumps a variety of potentially malicious implants (replaced/implanted PEs, shellcodes, hooks, in-memory patches).

2,355 GitHub