Manage all types of time series data in a single, purpose-built database. Run at any scale in any environment in the cloud, on-premises, or at the edge. Learn more →
Top 23 Python Malware Projects
-
hosts
🔒 Consolidating and extending hosts files from several well-curated sources. Optionally pick extensions for porn, social media, and other categories.
Not by default but a blocklist can be found here https://github.com/StevenBlack/hosts
-
Project mention: I am looking for a shortcut to convert PICs like this to a working CSS code using the aid of AI, is it possible ? ( i am studying CyberSec, so i need temps like this from time to time, i am mediocre at programming tho) | /r/ChatGPT | 2023-04-09
dis but for multiple vendors .. as a project for this semester
-
InfluxDB
Collect and Analyze Billions of Data Points in Real Time. Manage all types of time series data in a single, purpose-built database. Run at any scale in any environment in the cloud, on-premises, or at the edge.
-
theZoo
A repository of LIVE malwares for your own joy and pleasure. theZoo is a project created to make the possibility of malware analysis open and available to the public.
-
Project mention: What is the appropriate uncompressed kernel ELF to use with dwarf2json? [ 5.19.0-42-generic #43~22.04.1-Ubuntu ], in order to create generate a custom symbols table to conduct linux memory forensics on Ubuntu 22.04? | /r/computerforensics | 2023-05-28
I need this to create generate a custom symbols table (using dwarf2json), in order to run a memory dump acquired by Ubuntu 22.04, as Ubuntu 22.04 kernel does not work anymore with volatility 2 (Issue here: volatilityfoundation/volatility#828)
-
pyWhat
🐸 Identify anything. pyWhat easily lets you identify emails, IP addresses, and more. Feed it a .pcap file or some text and it'll tell you what it is! 🧙♀️
-
I just wanted to tell you about Maltrail (https://github.com/stamparm/maltrail/).
-
-
Onboard AI
Learn any GitHub repo in 59 seconds. Onboard AI learns any GitHub repo in minutes and lets you chat with it to locate functionality, understand different parts, and generate new code. Use it for free at www.getonboard.dev.
-
Project mention: Why is this de-compiled code showing a different value in memory sometimes? | /r/ghidra | 2023-03-06
Depending on how clever the developer was, this tool works well to find hidden strings: https://github.com/mandiant/flare-floss
-
malwoverview
Malwoverview is a first response tool used for threat hunting and offers intel information from Virus Total, Hybrid Analysis, URLHaus, Polyswarm, Malshare, Alien Vault, Malpedia, Malware Bazaar, ThreatFox, Triage, InQuest and it is able to scan Android devices against VT.
-
Project mention: APT_REPORT/WithSecure-Lazarus-No-Pineapple-Threat-Intelligence-Report-2023.pdf at master · blackorbird/APT_REPORT | /r/SecOpsDaily | 2023-02-06
-
-
-
-
Project mention: How do you deal with phising emails at your company? | /r/cybersecurity | 2023-05-14
-
-
intelmq
IntelMQ is a solution for IT security teams for collecting and processing security feeds using a message queuing protocol.
-
Project mention: so uhh help? when i downloaded this, it says that there's "21 security vendors and no sandboxes flagged this file as malicious". is this safe to run? | /r/antivirus | 2023-03-11
here it is : https://www.virustotal.com/gui/file/80f39a11a179b4b0829192f0283f53b4170347f760deb4b40b346ac99bba4d87 and this is the thing im tryna download : https://github.com/addi00000/empyrean
-
opensquat
The openSquat project is an open-source solution for detecting phishing domains and domain squatting. It searches for newly registered domains that impersonate legitimate domains on a daily basis.
A different solution that runs locally is opensquat.
-
I believe the program is something called Luna Grabber which has the ability to know if it is being used on a VM or not. However, there isn't much data on how to actually remove it from the computer. https://github.com/Smug246/Luna-Grabber
-
packj
Packj stops :zap: Solarwinds-, ESLint-, and PyTorch-like attacks by flagging malicious/vulnerable open-source dependencies ("weak links") in your software supply-chain
Creator of Packj [1] here. How do you envision sandboxing/security policies will be specified? Per-lib policies when you've hundreds of dependencies will become overwhelming. Having built an eBPF-based sandbox [2], I anticipate that accuracy will be another challenge here: too restrictive will block functionality, too permissive defeats the purpose.
1. https://github.com/ossillate-inc/packj flags malicious/risky NPM/PyPI/RubyGems/Rust/Maven/PHP packages by carrying out static+dynamic+metadata analysis.
-
-
-
MISP Threat Actor Galaxy
-
SaaSHub
SaaSHub - Software Alternatives and Reviews. SaaSHub helps you find the best software and product alternatives
Python Malware related posts
- Does PiHole block porn?
- Steven Black DNS blocklist blocked gstatic.com
- Big things are happening with RaspAP's Ad Blocking 🛑 Users will soon have more blocklist sources to choose from
- TheZoo a.k.a. Malware DB
- I installed Firefox + uBlock Origin like everyone suggested in my previous post, but this pop-up still appears, now with a 5 sec timer.
- “We have nothing to do with ads ” (2021)
- Tools to demonstrate malware or ransomware infected PC
-
A note from our sponsor - InfluxDB
www.influxdata.com | 10 Dec 2023
Index
What are some of the best open-source Malware projects in Python? This list will help you:
Project | Stars | |
---|---|---|
1 | hosts | 24,280 |
2 | wifiphisher | 12,304 |
3 | theZoo | 10,315 |
4 | volatility | 6,636 |
5 | pyWhat | 6,182 |
6 | maltrail | 5,479 |
7 | qiling | 4,323 |
8 | flare-floss | 2,841 |
9 | malwoverview | 2,581 |
10 | APT_REPORT | 2,034 |
11 | volatility3 | 1,907 |
12 | CAPEv2 | 1,473 |
13 | yarGen | 1,378 |
14 | ThePhish | 956 |
15 | drakvuf-sandbox | 908 |
16 | intelmq | 860 |
17 | empyrean | 784 |
18 | opensquat | 608 |
19 | Luna-Grabber | 605 |
20 | packj | 572 |
21 | Python-Rootkit | 531 |
22 | MalConfScan | 460 |
23 | misp-galaxy | 448 |