SaaSHub helps you find the best software and product alternatives Learn more →
Top 15 Python malware-detection Projects
-
dagda
a tool to perform static analysis of known vulnerabilities, trojans, viruses, malware & other malicious threats in docker images/containers and to monitor the docker daemon and running docker containers for detecting anomalous activities
-
SaaSHub
SaaSHub - Software Alternatives and Reviews. SaaSHub helps you find the best software and product alternatives
-
malware-ioc
This repository contains indicators of compromise (IOCs) of our various investigations. (by prodaft)
-
pandora
Pandora is an analysis framework to discover if a file is suspicious and conveniently show the results (by pandora-analysis)
-
-
yaralyzer
Visually inspect and force decode YARA and regex matches found in both binary and text data with colors. Lots of colors.
-
malicious-code-ruleset
Focused malicious code detection ruleset, with a high protection-to-noise ratio
-
-
SEMA
SEMA is based on angr, a symbolic execution engine used to extract API calls. Especially, we extend ANGR with strategies to create representative signatures based on System Call Dependency graph (SCDG). Those SCDGs can be exploited in machine learning modules to do classification/detection. (by csvl)
-
ShonyDanza
A customizable, easy-to-navigate tool for researching, pen testing, and defending with the power of Shodan.
-
-
DeepMalwareDetector
A Deep Learning framework that analyses Windows PE files to detect malicious Softwares.
-
CertVerify
A scanner that files with compromised or untrusted code signing certificates written in python.
-
awesome-openclaw-security
Security hardening guide, malicious skill scanner, and production configs for OpenClaw. Stop deploying naked.
Project mention: Show HN: Security toolkit for OpenClaw – scanner, hardened configs, guides | news.ycombinator.com | 2026-03-08 -
Project mention: Show HN: FileGuard – Detect files with fake extensions in real-time | news.ycombinator.com | 2026-02-08
-
clawhub-bridge
Security scanner for AI agent skills — 57 patterns, 13 categories, capability lattice. Zero dependencies.
Project mention: I Scanned 2,000 OpenClaw Skills for Malicious Patterns — 14.5% Failed | dev.to | 2026-04-03I built clawhub-bridge, a security scanner that detects malicious behavioral patterns in agent skills — not code vulnerabilities, but what the skill tells the agent to do. 145 detection patterns across 42 categories, from credential exfiltration to steganographic payloads.
Python malware-detection discussion
Python malware-detection related posts
-
The Security Scanner Was the Attack Vector — How Supply Chain Attacks Hit AI Agents Differently
-
PTI-257 Group Indicators of Compromise (IOCs) - PTI-257 consists of former Wizard Spider actors who are publicly known for the various malware variants they use (Ryuk, Trickbot, and Conti, among others)
-
Decryptor for PlutoCrypt Ransomware
-
PTI-249 Group Indicators of Compromise (IOC)
-
Vice Society Ransomware Indicators of Compromises (IOC)
-
Lockbit Green Indicators of Compromises (IOCs)
-
The Yaralyzer is a new tool for visualizing and force decoding YARA and regular expression matches in binary and text data of any kind
-
A note from our sponsor - SaaSHub
www.saashub.com | 7 Jun 2026
Index
What are some of the best open-source malware-detection projects in Python? This list will help you:
| # | Project | Stars |
|---|---|---|
| 1 | dagda | 1,233 |
| 2 | malware-ioc | 319 |
| 3 | pandora | 280 |
| 4 | PRevent | 259 |
| 5 | yaralyzer | 150 |
| 6 | malicious-code-ruleset | 146 |
| 7 | DroidDetective | 137 |
| 8 | SEMA | 122 |
| 9 | ShonyDanza | 120 |
| 10 | malwarescanner | 90 |
| 11 | DeepMalwareDetector | 76 |
| 12 | CertVerify | 64 |
| 13 | awesome-openclaw-security | 3 |
| 14 | file-validator | 2 |
| 15 | clawhub-bridge | 0 |