Friday, April 11, 2025
HomeLinuxREMnux - A Linux-based Malware Analysis Toolkit for Malware Researchers

REMnux – A Linux-based Malware Analysis Toolkit for Malware Researchers

Published on

SIEM as a Service

Follow Us on Google News

REMnux is a Linux distro for malware researchers that has a curated collection of free tools used for examining executables, documents, scripts, and other forms of malicious code. The tools help researchers to find, install, and configure the tools.

The initial release was before 10 years, now a new version REMnux 7 is released. It can be installed as a virtual appliance or standalone operating system or can be run as a docker container.

The distro is based on Ubuntu, created and maintained by Lenny Zeltser, an instructor and author at SANSInstitute.

- Advertisement - Google News

New REMnux v7

With the new version, all the tools have been refreshed, some of the old tools have been retired and many new tools have been added.

Number of new tools has been added with the latest version to perform the following tasks

  • Examine Static Properties
  • Statically Analyze Code
  • Dynamically Reverse-Engineer Code
  • Perform Memory Forensics
  • Explore Network Interactions
  • Investigate System Interactions
  • Check static properties
  • Gather and analyze data
  • Static code analysis

Zeltser also scheduled a webcast What’s New in REMnux on July 28, 2020, to showcase the new distro, if you are interested you can join.

Also, the documentation is revamped let anyone become familiar with its tools and also explains the distro’s building blocks.

Zeltser also released a new cheat sheet that outlines the tools and commands for analyzing malware using the REMnux v7.

You can add REMnux as a virtual appliance, install the distro on a dedicated system, add it to an existing one, or Run REMnux as a container.

Malware Analysis Course: Certified Malware Analyst Course where you learn about Exploit Development, Expert Malware Analysis, Threat Research & Reverse Engineering

You can follow us on LinkedinTwitterFacebook for daily Cybersecurity and hacking news updates.

Also Read

Free Open Source Penetration Testing Distro BackBox Linux 6 Released with new Hacking Tools

Powerful Penetration Testing Distro Kali Linux Now available in Windows 10

Gurubaran
Gurubaran
Gurubaran is a co-founder of Cyber Security News and GBHackers On Security. He has 10+ years of experience as a Security Consultant, Editor, and Analyst in cybersecurity, technology, and communications.

Latest articles

AMD CPU Signature Verification Vulnerability Enables Unauthorized Microcode Execution

A vulnerability in AMD CPUs has been uncovered, enabling attackers with administrative privileges to...

Researchers Exploit Windows Defender with XOR and System Calls

A recent cybersecurity revelation has demonstrated how researchers successfully bypassed Windows Defender antivirus mechanisms...

Ivanti 0-Day RCE Flaw Exploitation Details Revealed

A critical unauthenticated Remote Code Execution (RCE) vulnerability, CVE-2025-22457, has been disclosed by Ivanti, sparking concerns across...

Jenkins Docker Vulnerability Allows Hackers to Hijack Network Traffic

A newly disclosed vulnerability affecting Jenkins Docker images has raised serious concerns about network...

Resilience at Scale

Why Application Security is Non-Negotiable

The resilience of your digital infrastructure directly impacts your ability to scale. And yet, application security remains a critical weak link for most organizations.

Application Security is no longer just a defensive play—it’s the cornerstone of cyber resilience and sustainable growth. In this webinar, Karthik Krishnamoorthy (CTO of Indusface) and Phani Deepak Akella (VP of Marketing – Indusface), will share how AI-powered application security can help organizations build resilience by

Discussion points


Protecting at internet scale using AI and behavioral-based DDoS & bot mitigation.
Autonomously discovering external assets and remediating vulnerabilities within 72 hours, enabling secure, confident scaling.
Ensuring 100% application availability through platforms architected for failure resilience.
Eliminating silos with real-time correlation between attack surface and active threats for rapid, accurate mitigation

More like this

Linux 6.15-rc1 Released: Better Drivers, Faster Performance

The Linux kernel community has witnessed another milestone with the release of Linux 6.15-rc1,...

Auto-Color Linux Backdoor: TTPs and Internal Architecture Exposed

A newly identified Linux backdoor named "Auto-Color," first observed between November and December 2024,...

Hunters International Linked to Hive Ransomware in Attacks on Windows, Linux, and ESXi Systems

Hunters International, a ransomware group suspected to be a rebrand of the infamous Hive...