Browse live malware projects
Implant Configuration Extraction and C2 Channel Profiling
Botnets & C2
The organization observed regular, low-volume outbound connections from several workstations that align with automated beacon timing. We need a researcher to characterize the beacon interval, jitter, and encoding, then determine whether the host is enrolled in a command-and-control channel and how to scope the wider footprint.
Budget: $3,900 - $7,350
Beacon Traffic Analysis on Suspected Compromised Endpoints
Botnets & C2
We have one confirmed malicious sample and very little context. We need it pivoted outward into a connected infrastructure graph, mapping the C2 endpoints, supporting domains, and any shared hosting or registration signals that tie the nodes together into a single operation.
Budget: $4,750 - $8,950
Periodic Outbound Callback Investigation on Finance Subnet
Botnets & C2
Encrypted callbacks are obscuring what an implant is actually doing, and we need help reconstructing the command channel. The researcher should decode the beacon structure where feasible, reconstruct the sleep and check-in pattern, and explain what tasking the operator could plausibly issue.
Budget: $1,750 - $3,300
Botnet Membership Assessment Across a Mid-Size Network
Botnets & C2
A recovered implant resolves an ever-changing list of domains, which suggests a domain-generation algorithm rather than a fixed C2. We want the generation logic reversed, the seed and date dependency identified, and a forward-looking list of likely domains so we can pre-emptively block and monitor them.
Budget: $4,100 - $7,750