Sadpainy/Stuxnet
Stuxnet, Here reproduced by me, Only researchs for educations purposes. It set work on Windows XP and Windows 7 only.
About the project
An educational reconstruction of the Stuxnet worm's source code in C, derived from decompiled 2010 binaries. Intended for studying APT attack logic against ICS and developing defensive tools.
Useful for
- Study Stuxnet architecture by modules: dropper, rootkit, S7 hooks
- Develop YARA rules and Snort signatures to detect its components
- Analyze behavior of mrxcls.sys and mrxnet.sys drivers in an isolated VM
README summarized by DeepSeek V4.1 Flash. Details may be inaccurate.
Why it’s trending
- 9 stars today.
- Interest is fading: the two-day pace is 32% of the previous week and a half.
- The spike has held for 3 days in a row — not a one-off blip.
- The repository is 7 days old and already has 482 stars.
- Hacker News: “Show HN: Stuxnet – A reconstructed source code of the infamous cyber-weapon” — 178 points, 6 days ago.
- About 7 forks a day — people are taking the code.
Stars per day
Bars are daily stars, the line is the usual pace. Red marks spike days.
Numbers
- Total stars
- 482
- Stars in a day
- 9
- Forks
- 88
- Issues and pull requests
- 0
- Watchers
- 4
- Language
- C
- License
- AGPL-3.0
- Created
- September 6, 2026
- Last push
- September 13, 2026
Star trust
Growth looks organic: forks and discussion are in line with active projects, and stars arrive unevenly, the way people give them.
These are heuristics, not a verdict: we judge by the repository’s behavior, not by a list of stargazers.
Hacker News discussions
- Show HN: Stuxnet – A reconstructed source code of the infamous cyber-weapon178 points, September 7, 2026
Spotted in
- September 13, 2026Spotted on Hacker News
Similar projects
-
7.0
SnailSploit/Claude-Red
A curated library of drop-in SKILL.md files for the Claude Skills system that primes Claude with offensive security methodology, from SQL injection to EDR evasion and exploit development.
-
6.2
vxcontrol/pentagi
Autonomous multi-agent system in Go for automated penetration testing: AI agents plan and execute steps in an isolated Docker sandbox with 20+ tools (nmap, metasploit, sqlmap).
-
5.0
hezhanleiok/freesub
Automatically tests and publishes subscription pools of free proxy nodes (VLESS, VMess, Trojan, Shadowsocks, Hysteria2, TUIC, AnyTLS), filtering out dead and hijacked nodes via real HTTPS handshakes and TLS validation.
-
4.9
tsymbaluyk/maskgate
PII masking service that detects passports, tax IDs, SNILS, bank cards, phones, medical data and secrets in text and files and masks them before they reach ChatGPT, Claude, Gemini. Source code is proprietary; this repo…
-
4.3
zhihui-hu/one-ip
Web tool for IP lookups: identifies datacenter, VPN, Tor and proxy usage, rates reputation from 0 to 100, shows ASN, WHOIS, DNS, CDN, geolocation and checks AI service reachability.
-
4.2
realchendahuang/feedsieve
A Chrome extension that flags spam accounts on X (Twitter) with a yellow border and lets you block them manually or in bulk via the native API, synced across all devices.