this post was submitted on 04 Oct 2024
19 points (95.2% liked)

Programming

17416 readers
51 users here now

Welcome to the main community in programming.dev! Feel free to post anything relating to programming here!

Cross posting is strongly encouraged in the instance. If you feel your post or another person's post makes sense in another community cross post into it.

Hope you enjoy the instance!

Rules

Rules

  • Follow the programming.dev instance rules
  • Keep content related to programming in some way
  • If you're posting long videos try to add in some form of tldr for those who don't want to watch videos

Wormhole

Follow the wormhole through a path of communities !webdev@programming.dev



founded 1 year ago
MODERATORS
 

This is going to sound fishy.

Recently getting into cybersecurity things and have been pretty interested in looking at malware and maybe making some myself to get the hang of it. Do you guys know any good repositories with malware to learn from? For example, if I wanted to make a credential stealing program, there's a lot of different programs that may have credentials that are valuable. Or, maybe writing a keylogger? I took a look at a rust crate that can record keystrokes but has kind of a weird (or at least not as easy) type system because of different OS implementations, but how do different types of malware consolidate those differences?

I guess the broader question I'm getting at specifically is looking at how already made programs get around different technical obstacles like detailed above.

Thanks

you are viewing a single comment's thread
view the rest of the comments
[–] CameronDev@programming.dev 8 points 1 month ago* (last edited 1 month ago) (2 children)

https://github.com/ytisf/theZoo

Thats a repo of existing malware. Be careful with it. You can use that to start reverse engineering an existing malware. Use a VM that isnt connected to a network.

If you want to write something, go for it. Often malware is tailored to a single OS (Windows), so cross platform is less of a concern.

The hard part of writing malware is doing it in an undetectable way, which will usually require deeper OS knowledge, which you'll have to acquire over time. YouTube has some good videos if you hunt around.

[–] ExperimentalGuy@programming.dev 3 points 1 month ago (1 children)

Sweet - I didn't realize that malware is tailored for one OS usually, but that makes a lot more sense.

[–] montar@lemmy.zip 3 points 1 month ago

https://vx-underground.org/ has a really big database and an awesome papers section. When you will take a look at it you'll ask a question, the answer is infected.