GitStar
GitHub TrendingTopicsLanguages
/

Malware Analysis GitHub Repositories

Explore popular GitHub repositories tagged “malware-analysis”.

Compare stars, forks, and programming language using the same GitStar view as GitHub Trending.

RepositoriesGitHub topic
Ranked by:Stars

Trending Repositories

x64dbg/x64dbg

An open-source user mode debugger for Windows. Optimized for reverse engineering and malware analysis.

C++49,1872,817
mukul975/Anthropic-Cybersecurity-Skills

817 structured cybersecurity skills for AI agents · Mapped to 6 frameworks: MITRE ATT&CK, NIST CSF 2.0, MITRE ATLAS, D3FEND, NIST AI RMF & MITRE F3 (Fight Fraud) · agentskills.io standard · Works with Claude Code, GitHub Copilot, Codex CLI, Cursor, Gemini CLI & 20+ platforms · 29 security domains · Apache 2.0

Python28,7693,466
radareorg/radare2

UNIX-like reverse engineering framework and command-line toolset

C24,5893,299
MobSF/Mobile-Security-Framework-MobSF

Mobile Security Framework (MobSF) is an automated, all-in-one mobile application (Android/iOS/Windows) pen-testing, malware analysis and security assessment framework capable of performing static and dynamic analysis.

JavaScript21,6063,754
rshipp/awesome-malware-analysis

Defund the Police.

14,1292,686
ytisf/theZoo

A repository of LIVE malwares for your own joy and pleasure. theZoo is a project created to make the possibility of malware analysis open and available to the public.

Python13,3002,758
horsicq/Detect-It-Easy

Program for determining types of files for Windows, Linux and MacOS.

JavaScript11,366945
pwndbg/pwndbg

Exploit Development and Reverse Engineering with GDB & LLDB Made Easy

Python10,7711,254
We5ter/Scanners-Box

A powerful and open-source toolkit for hackers and security automation - 安全行业从业者自研开源扫描器合辑

9,0172,422
mandiant/flare-vm

A collection of software installations scripts for Windows systems that allows you to easily setup and maintain a reverse engineering environment on a VM.

PowerShell8,9411,104
hugsy/gef

GEF (GDB Enhanced Features) - a modern experience for GDB with advanced debugging capabilities for exploit devs & reverse engineers on Linux

Python8,318833
bee-san/pyWhat

🐸 Identify anything. pyWhat easily lets you identify emails, IP addresses, and more. Feed it a .pcap file or some text and it'll tell you what it is! 🧙‍♀️

Python7,309391
MISP/MISP

MISP (core software) - Open Source Threat Intelligence and Sharing Platform

PHP6,4791,626
mandiant/capa

The FLARE team's open-source tool to identify capabilities in executable files.

Python6,142717
lief-project/LIEF

LIEF - Library to Instrument Executable Formats (C++, Python, Rust)

C++5,532747
mentebinaria/retoolkit

Reverse Engineer's Toolkit

Inno Setup5,263537
charles2gan/GDA-android-reversing-Tool

the fastest and most powerful android decompiler(native tool working without Java VM) for the APK, DEX, ODEX, OAT, JAR, AAR, and CLASS file. which supports malicious behavior detection, privacy leaking detection, vulnerability detection, path solving, packer identification, variable tracking, deobfuscation, python&java scripts, device memory extraction, data decryption, and encryption, etc.

Python4,811573
intelowlproject/IntelOwl

IntelOwl: manage your Threat Intelligence at scale

Python4,673658
CalebFenton/simplify

Android virtual machine and deobfuscator

Java4,657455
A-poc/BlueTeam-Tools

Tools and Techniques for Blue Team / Incident Response

4,435686
pedramamini/awesome-yara

A curated list of awesome YARA rules, tools, and people.

4,256552
mandiant/flare-floss

FLARE Obfuscated String Solver - Automatically extract obfuscated strings from malware.

Python4,122539
alexandreborges/malwoverview

Malwoverview is a first response tool for threat hunting across VirusTotal, Hybrid Analysis, URLHaus, Polyswarm, Malshare, Alien Vault, Malpedia, Malware Bazaar, ThreatFox, Triage, IPInfo, Shodan, AbuseIPDB, GreyNoise, URLScan.io, Whois/RDAP, NIST, and VulnCheck. Supports LLM enrichment, IOC extraction, YARA scanning, and Android analysis.

Python4,067555
HyperDbg/HyperDbg

State-of-the-art native debugging tools

C3,999499
APKLab/APKLab

Android Reverse-Engineering Workbench for VS Code

TypeScript3,944335
hasherezade/pe-sieve

Scans a given process. Recognizes and dumps a variety of potentially malicious implants (replaced/injected PEs, shellcodes, hooks, in-memory patches).

C++3,856494
hasherezade/pe-bear

Portable Executable reversing tool with a friendly GUI

C++3,770243
kevoreilly/CAPEv2

Malware Configuration And Payload Extraction

Python3,433595
decalage2/oletools

oletools - python tools to analyze MS OLE2 files (Structured Storage, Compound File Binary Format) and MS Office documents, for malware analysis, forensics and debugging.

Python3,395605
user1342/Awesome-Android-Reverse-Engineering

A curated list of awesome Android Reverse Engineering training, resources, and tools.

2,656287
GitStar

See what the GitStar community is most excited about today.

Trending

GitHub Trending TodayGitHub Trending WeeklyGitHub Trending Monthly

Languages

Browse all languagesTrending PythonTrending JavaScript

Explore

Browse GitHub topicsAI repositoriesDeveloper tools
© 2026 GitStarGitHub Trending source