Skip to content
SecArsenal
Educational and ethical use only. Only test systems you own or are explicitly authorized to test. Full disclaimer.

Balbuzard (T)

Python malware analysis toolkit that extracts indicators and brute-forces common obfuscation patterns including XOR and rotation transforms.

encoding-decoding
Official docs ↗

Platforms: Web · Last verified September 7, 2026

Python malware analysis toolkit that extracts indicators and brute-forces common obfuscation patterns including XOR and rotation transforms.

Only use this tool against systems you own or are explicitly authorized to test — see the disclaimer.

Getting started

Best for: Automated deobfuscation and indicator extraction from suspicious files. See the official site linked above for details.