Armory
Source
Browse
Sub-Agents

malware-analyst

Expert malware analyst specializing in defensive malware research, threat intelligence, and incident response. Masters sandbox analysis, behavioral analysis, and malware family identification. Handles static/dynamic analysis, unpacking, and IOC extraction. Use PROACTIVELY for malware triage, threat hunting, incident response, or security research.

Score
Unranked
Evidence
No signals yet
Last commit
Not known
Listed

Install

armory install malware-analyst --cli claude

writes the file to.claude/agents/malware-analyst.mdListed as compatible

Configuration
# fetches the source and writes it to:
.claude/agents/malware-analyst.md

Needs the armory CLI · not on npm yet, build it from cli/ in the repository

What it is

wshobson/agents sub-agent malware-analyst (model: opus) from the reverse-engineering plugin. Expert malware analyst specializing in defensive malware research, threat intelligence, and incident response. Masters sandbox analysis, behavioral analysis, and malware family identification. Handles static/dynamic analysis, unpacking, and IOC extraction. Use PROACTIVELY for malware triage, threat hunting, incident response, or security research.

When to use it

Expert malware analyst specializing in defensive malware research, threat intelligence, and incident response. Masters sandbox analysis, behavioral analysis, and malware family identification. Handles static/dynamic analysis, unpacking, and IOC extraction. Use PROACTIVELY for malware triage, threat hunting, incident response, or security research.

How to install / invoke

# copy the agent definition into your project's .claude/agents/
curl -sL https://github.com/wshobson/agents/raw/main/plugins/reverse-engineering/agents/malware-analyst.md -o .claude/agents/malware-analyst.md

Notes

Extracted from wshobson/agents. Plugin: reverse-engineering.