REPOSITORY OVERVIEWLive repository statistics
★ 14KStars
⑂ 2.7KForks
◯ 25Open issues
◉ 14KWatchers
86/100
OPENREPOHUB HEALTH SIGNALStrong signals
A transparent discovery signal based on current public GitHub metadata.
Recent activity35% weight
100 Community adoption25% weight
84 Maintenance state20% weight
100 License clarity10% weight
0 Project information10% weight
100 This score does not audit code, security, maintainers, documentation quality, or suitability. Verify the repository and its current documentation before adoption.
README preview
Awesome Malware Analysis 
A curated list of awesome malware analysis tools and resources. Inspired by
awesome-python and
awesome-php.
View Chinese translation: 恶意软件分析大合集.md.
Malware Collection
Anonymizers
Web traffic anonymizers for analysts.
- Anonymouse.org - A free, web based anonymizer.
- OpenVPN - VPN software and hosting solutions.
- Privoxy - An open source proxy server with some
privacy features.
- Tor - The Onion Router, for browsing the web
without leaving traces of the client IP.
Honeypots
Trap and collect your own samples.
- Conpot - ICS/SCADA honeypot.
- Cowrie - SSH honeypot, based
on Kippo.
- DemoHunter - Low interaction Distributed Honeypots.
- Dionaea - Honeypot designed to trap malware.
- Glastopf - Web application honeypot.
- Honeyd - Create a virtual honeynet.
- HoneyDrive - Honeypot bundle Linux distro.
- Honeytrap - Opensource system for running, monitoring and managing honeypots.
- MHN - MHN is a centralized server for management and data collection of honeypots. MHN allows you to deploy sensors quickly and to collect data immediately, viewable from a neat web interface.
- Mnemosyne - A normalizer for
honeypot data; supports Dionaea.
- Thug - Low interaction honeyclient, for
investigating malicious websites.
Malware Corpora
Malware samples collected for analysis.
- Clean MX - Realtime
database of malware and malicious domains.
- Contagio - A collection of recent
malware samples and analyses.
- Exploit Database - Exploit and shellcode
samples.
- Infosec - CERT-PA - Malware samples collection and analysis.
- InQuest Labs - Evergrowing searchable corpus of malicious Microsoft documents.
- Javascript Mallware Collection - Collection of almost 40.000 javascript malware samples
- Malpedia - A resource providing
rapid identification and actionable context for malware investigations.
- Malshare - Large repository of malware actively
scrapped from malicious sites.
- Ragpicker - Plugin based malware
crawler with pre-analysis and reporting functionalities
- theZoo - Live malware samples for
analysts.
- Tracker h3x - Agregator for malware corpus tracker
and malicious download sites.
- vduddu malware repo - Collection of
various malware files and source code.
- VirusBay - Community-Based malware repository and social network.
- ViruSign - Malware database that detected by
many anti malware programs except ClamAV.
- VirusShare - Malware repository, registration
required.
- VX Vault - Active collection of malware samples.
- Zeltser's Sources - A list
of malware sample sources put together by Lenny Zeltser.
Open Source Threat Intelligence
Tools
Harvest and analyze IOCs.
- AbuseHelper - An open-source
framework for receiving and redistributing abuse feeds and threat intel.
- AlienVault Open Threat Exchange - Share and
collaborate in developing Threat Intelligence.
- Combine - Tool to gather Threat
Intelligence indicators from publicly available sources.
- Fileintel - Pull intelligence per file hash.
- Hostintel - Pull intelligence per host.
- IntelMQ -
A tool for CERTs for processing incident data using a message queue.
- IOC Editor -
A free editor for XML IOC files.
- iocextract - Advanced Indicator
of Compromise (IOC) extractor, Python library and command-line tool.
- ioc_writer - Python library for
working with OpenIOC objects, from Mandiant.
- MalPipe - Malware/IOC ingestion and
processing engine, that enriches collected data.
- Massive Octo Spice -
Previously known as CIF (Collective Intelligence Framework). Aggregates IOCs
from various lists. Curated by the
CSIRT Gadgets Foundation.
- MISP - Malware Information Sharing
Platform curated by The MISP Project.
- Pulsedive - Free, community-driven threat intelligence platform collecting IOCs from open-source feeds.
- PyIOCe - A Python OpenIOC editor.
- RiskIQ - Research, connect, tag and
share IPs and domains. (Was PassiveTotal.)
Other Resources
Threat intelligence and IOC resources.
ALGORITHMICALLY RELATEDSimilar Open-Source Projects
Selected from shared topics, language and repository description—not editorial ratings.
Defund the Police. With repository stars⭐ and forks🍴
61/100 healthRecently updatedActive repository
NOASSERTION#analysis-framework#automated-analysis#awesome#awesome-list
⑂ 2 forks◯ 2 issuesUpdated today