Python Malware

Open-source Python projects categorized as Malware

Top 23 Python Malware Projects

  1. hosts

    🔒 Consolidating and extending hosts files from several well-curated sources. Optionally pick extensions for porn, social media, and other categories.

    Project mention: uBlock Origin is no longer available on the Chrome Store | news.ycombinator.com | 2025-03-10

    uBlock Origin still works in Firefox. https://addons.mozilla.org/en-US/firefox/addon/ublock-origin...

    And you can, I believe, still just modify your hosts table to block out ads in Chrome. https://github.com/StevenBlack/hosts

    Or your router's DNS using something like NextDNS. https://nextdns.io/

    Ads suck. Support content where you can, but even when you pay they still serve ads / tracking scripts. So fuck 'em. Block all the ads.

  2. CodeRabbit

    CodeRabbit: AI Code Reviews for Developers. Revolutionize your code reviews with AI. CodeRabbit offers PR summaries, code walkthroughs, 1-click suggestions, and AST-based analysis. Boost productivity and code quality across all major languages with each PR.

    CodeRabbit logo
  3. wifiphisher

    The Rogue Access Point Framework

  4. theZoo

    A repository of LIVE malwares for your own joy and pleasure. theZoo is a project created to make the possibility of malware analysis open and available to the public.

    Project mention: Malware Analysis: CryptoLocker | dev.to | 2024-12-29

    The analyzed sample is provided within this folder, the password for the zip file is infected. This sample was taken from theZoo Repository.

  5. volatility

    An advanced memory forensics framework

    Project mention: 💀 Insomni'hack 2025 CTF write-up | dev.to | 2025-03-17

    We were given a quite big 20250312.mem file. Looking at the name of the challenge and the size of the file, it was clear it was required to use volatility.

  6. maltrail

    Malicious traffic detection system

  7. pyWhat

    🐸 Identify anything. pyWhat easily lets you identify emails, IP addresses, and more. Feed it a .pcap file or some text and it'll tell you what it is! 🧙‍♀️

    Project mention: pyWhat VS binwalk - a user suggested alternative | libhunt.com/r/pyWhat | 2024-07-19
  8. qiling

    A True Instrumentable Binary Emulation Framework

    Project mention: Qiling: A True Instrumentable Binary Emulation Framework | news.ycombinator.com | 2024-04-01
  9. SaaSHub

    SaaSHub - Software Alternatives and Reviews. SaaSHub helps you find the best software and product alternatives

    SaaSHub logo
  10. flare-floss

    FLARE Obfuscated String Solver - Automatically extract obfuscated strings from malware.

  11. malwoverview

    Malwoverview is a first response tool used for threat hunting and offers intel information from Virus Total, Hybrid Analysis, URLHaus, Polyswarm, Malshare, Alien Vault, Malpedia, Malware Bazaar, ThreatFox, Triage, InQuest, VxExchange and IPInfo, and it is also able to scan Android devices against VT.

  12. volatility3

    Volatility 3.0 development

    Project mention: Memory Dump Analysis | Kali Linux | dev.to | 2024-09-17

    Clone the Volatility 3 repository: > git clone https://github.com/volatilityfoundation/volatility3.git

  13. APT_REPORT

    Interesting APT Report Collection And Some Special IOC

  14. CAPEv2

    Malware Configuration And Payload Extraction

  15. yarGen

    yarGen is a generator for YARA rules

  16. ThePhish

    ThePhish: an automated phishing email analysis tool

  17. drakvuf-sandbox

    DRAKVUF Sandbox - automated hypervisor-level malware analysis system

  18. intelmq

    IntelMQ is a solution for IT security teams for collecting and processing security feeds using a message queuing protocol.

  19. opensquat

    The openSquat is an open-source tool for detecting domain look-alikes by searching for newly registered domains that might be impersonating legit domains and brands.

  20. packj

    Packj stops :zap: Solarwinds-, ESLint-, and PyTorch-like attacks by flagging malicious/vulnerable open-source dependencies ("weak links") in your software supply-chain

    Project mention: A Study of Malware Prevention in Linux Distributions | news.ycombinator.com | 2024-11-21

    Good to see Packj[1] as one of the malware scanners used.

    1. https://github.com/ossillate-inc/packj

    Packj detects malicious PyPI/NPM/Ruby/PHP/etc. dependencies using behavioral analysis. It uses static+dynamic code analysis to scan for indicators of compromise (e.g., spawning of shell, use of SSH keys, network communication, use of decode+eval, etc). It also checks for several metadata attributes to detect bad actors (e.g., typo squatting).

  21. Python-Rootkit

    Python Remote Administration Tool (RAT) to gain meterpreter session

  22. misp-galaxy

    Clusters and elements to attach to MISP events or attributes (like threat actors)

    Project mention: MISP galaxy – cybersecurity and other related knowledge base | news.ycombinator.com | 2024-05-20
  23. MalConfScan

    Volatility plugin for extracts configuration data of known malware

  24. gmailc2

    A Fully Undetectable C2 Server That Communicates Via Google SMTP to evade Antivirus Protections and Network Traffic Restrictions

  25. Safe-and-Stable-Ckpt2Safetensors-Conversion-Tool-GUI

    Convert your Stable Diffusion checkpoints quickly and easily.

  26. SaaSHub

    SaaSHub - Software Alternatives and Reviews. SaaSHub helps you find the best software and product alternatives

    SaaSHub logo
NOTE: The open source projects on this list are ordered by number of github stars. The number of mentions indicates repo mentiontions in the last 12 Months or since we started tracking (Dec 2020).

Python Malware discussion

Log in or Post with

Python Malware related posts

  • 💀 Insomni'hack 2025 CTF write-up

    1 project | dev.to | 17 Mar 2025
  • Malware Analysis: CryptoLocker

    1 project | dev.to | 29 Dec 2024
  • Tell HN: I just updated my wife's Chrome, and uBlock is no longer supported

    5 projects | news.ycombinator.com | 25 Dec 2024
  • A Study of Malware Prevention in Linux Distributions

    1 project | news.ycombinator.com | 21 Nov 2024
  • pyWhat VS binwalk - a user suggested alternative

    2 projects | 19 Jul 2024
  • Cyber Scarecrow, making your computer look 'scary' to malware

    7 projects | news.ycombinator.com | 18 Jun 2024
  • Qiling: A True Instrumentable Binary Emulation Framework

    1 project | news.ycombinator.com | 1 Apr 2024
  • A note from our sponsor - SaaSHub
    www.saashub.com | 18 Mar 2025
    SaaSHub helps you find the best software and product alternatives Learn more →

Index

What are some of the best open-source Malware projects in Python? This list will help you:

# Project Stars
1 hosts 27,678
2 wifiphisher 13,633
3 theZoo 11,667
4 volatility 7,571
5 maltrail 6,794
6 pyWhat 6,768
7 qiling 5,312
8 flare-floss 3,449
9 malwoverview 3,114
10 volatility3 2,938
11 APT_REPORT 2,514
12 CAPEv2 2,247
13 yarGen 1,615
14 ThePhish 1,196
15 drakvuf-sandbox 1,105
16 intelmq 999
17 opensquat 767
18 packj 661
19 Python-Rootkit 603
20 misp-galaxy 557
21 MalConfScan 483
22 gmailc2 466
23 Safe-and-Stable-Ckpt2Safetensors-Conversion-Tool-GUI 446

Sponsored
CodeRabbit: AI Code Reviews for Developers
Revolutionize your code reviews with AI. CodeRabbit offers PR summaries, code walkthroughs, 1-click suggestions, and AST-based analysis. Boost productivity and code quality across all major languages with each PR.
coderabbit.ai

Did you know that Python is
the 2nd most popular programming language
based on number of references?