vxunderground/MalwareSourceCode resource
Collection of malware source code for a variety of platforms in an array of different programming languages. observed · 2026-08-28
Health v2 · maintenance only
70/100
- Activity 85
- Release rhythm 35
- Longevity 100
Flags: no_releases no_license
How is this computed?
round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-02. Adoption (stars, forks) is never an input.
- gap_med: n/a
- age_days: 2153
- days_rel: n/a
- days_push: 95
- n_releases_24m: 0
Adoption not part of the score
18675 stars · 2097 forks observed · 2026-08-28
What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-29, confidence not recorded
A large curated collection of malware source code spanning many platforms (Windows, Linux, Android, macOS, MS-DOS, PHP, Java, and more) and programming languages, maintained by vx-underground. It serves as a research reference archive for malware analysts, reverse engineers, and security researchers.
Use cases
- study malware source code to learn how infectors and rootkits work
- research malware families like Mirai spin-offs for detection research
- build and test antivirus or EDR detection signatures against real malware implementations
- analyze historical ransomware and botnet code for academic papers
- find reference implementations of bootkits, crypters, and stealers
- collect phishing page samples for security awareness training
When to choose
- you need a broad, organized archive of malware source across many platforms and languages
- you are a security researcher or malware analyst studying offensive techniques
- you want historical/legacy malware code (Win9x, MS-DOS, Symbian) for research
- you need reference samples to develop detection or reverse-engineering skills
When to avoid
- you want production security tooling or defensive software to deploy
- you need a maintained library with a license permitting reuse in your own projects (no license is provided)
- you are looking for a sandbox or analysis platform rather than raw source code
- you cannot safely handle malicious code or lack authorization to study it
Facets
dataset · maturity active
security reverse-engineering developer-tools security penetration-testing reverse-engineering operating-systems windows cross-platform malware malware-research malware-source-code vx-underground security-research dataset linux macos android
1 source
- readme: https://github.com/vxunderground/MalwareSourceCode · fetched 2026-08-28 · 1336546e8692
Member repositories
| Repository | Role | Health v2 |
|---|---|---|
| vxunderground/MalwareSourceCode | main | 70 |
For agents
markdown · JSON · MCP: product_card(name="vxunderground/MalwareSourceCode")
Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem