Skip to content
View f0wl's full-sized avatar
🐢
I may be slow to respond.
🐢
I may be slow to respond.

Organizations

@SIFalcon

Block or report f0wl

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 250 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

Library for lifting machine code to LLVM bitcode

C++ 1,472 156 Updated Sep 5, 2025

notes, honeypot, and exploit demo for the xz backdoor (CVE-2024-3094)

Go 3,528 236 Updated Apr 3, 2024

Operational Technology related Yara rules for the 2024 #100daysofYARA challenge. #OT #ICS #SCADA

YARA 8 2 Updated Feb 28, 2024

Rules shared by the community from 100 Days of YARA 2024

YARA 86 23 Updated Jan 1, 2025

This Zeek package provides the possibility to detect exfiltration through statistical analysis methods.

Zeek 6 1 Updated Nov 6, 2023

A ProcessMonitor visualization application written in rust.

TypeScript 184 17 Updated Aug 6, 2023

Remote forensics meta tool

Shell 471 110 Updated Mar 21, 2025

JADX-gui scripting plugin for dynamic decompiler manipulation

Java 694 58 Updated Feb 5, 2024

Discover TimeDateStamps In PE File

C++ 17 6 Updated Dec 12, 2015

Visually inspect and force decode YARA and regex matches found in both binary and text data with colors. Lots of colors.

Python 140 14 Updated Sep 14, 2025

bad stuffs by bad guys

C++ 49 9 Updated Jul 28, 2022

Pandora is an analysis framework to discover if a file is suspicious and conveniently show the results

Python 270 44 Updated Oct 7, 2025

Rekall Memory Forensic Framework

Python 1,978 402 Updated Oct 18, 2020

extract info from apk files

Go 75 12 Updated May 29, 2025

User-friendly Microsoft Windows Debugger for Malware Analysts.

Pascal 202 34 Updated Nov 15, 2022

Crack legacy zip encryption with Biham and Kocher's known plaintext attack.

C++ 1,977 176 Updated Sep 25, 2025

Triton is a dynamic binary analysis library. Build your own program analysis tools, automate your reverse engineering, perform software verification or just emulate code.

C++ 3,880 560 Updated Oct 5, 2025

Fast directory scanning and scraping tool

Rust 630 85 Updated Apr 8, 2025

OSINT from your favorite services in a friendly terminal user interface - integrations for Virustotal, Shodan, and Censys

Rust 1,199 89 Updated Jul 14, 2025

Hayabusa (隼) is a sigma-based threat hunting and fast forensics timeline generator for Windows event logs.

Rust 2,863 251 Updated Sep 25, 2025
Python 13 1 Updated Oct 29, 2022

A tool for generating multiple types of NTLMv2 hash theft files by Jacob Wilkin (Greenwolf)

Python 1,242 146 Updated Sep 22, 2025
Python 82 6 Updated Oct 15, 2022

SHAREM is a shellcode analysis framework, capable of emulating more than 20,000 WinAPIs and virutally all Windows syscalls. It also contains its own custom disassembler, with many innovative featur…

Python 425 64 Updated Jun 25, 2025

Quokka: A Fast and Accurate Binary Exporter

C++ 201 19 Updated Oct 7, 2025

YARI is an interactive debugger for YARA Language.

Rust 89 9 Updated Sep 10, 2025

Rapidly Search and Hunt through Windows Forensic Artefacts

Rust 3,314 293 Updated Oct 7, 2025

A PoC for Mhyprot2.sys vulnerable driver that allowing read/write memory in kernel/user via unprivileged user process.

C++ 339 69 Updated Jul 3, 2021
Next