Observed arrival · 2026-09-05
KittyVex, the malware sample strip-miner
A static malware-inspection tool that unpacks suspicious files and extracts Discord, Telegram, and webhook traces without executing them.
Field notes
The tool accepts seven listed file families, including APK and MSI, with a stated 150 MB ceiling. Its inspection path combines in-memory archive handling, multiple string encodings, recursive decoding, and read-only lookups against Discord and Telegram endpoints. Reports are described as recording the layers defeated during extraction and can be shared, exported as Markdown, or compared with another sample. The visible homepage currently reports zero scans and zero captured artifacts.
Observed signals
Read the marks
Editorial observations of this landing page, not a rating.
One card from the complete issue