Aldenar / salt-malware-sourcesLinks
Source files found after a recent hack of one of my machines, showing how the infection spreads itself and what it does, useful for analysis of other infected machines
☆13Updated 5 years ago
Alternatives and similar repositories for salt-malware-sources
Users that are interested in salt-malware-sources are comparing it to the libraries listed below
Sorting:
- AWS EKS Cluster Forensics☆23Updated 4 years ago
- A python script to acquire multiple aws ec2 instances in a forensically sound-ish way☆38Updated 3 years ago
- Rip Raw is a small tool to analyse the memory of compromised Linux systems.☆132Updated 3 years ago
- A Golang library for interacting with the EPSS (Exploit Prediction Scoring System).☆30Updated 7 months ago
- Container Blackbox Security Auditing Tool: enumerates security configuration from within the target container☆105Updated 6 years ago
- Things to know when DFIR occurs near a vault deployment.☆43Updated 7 years ago
- pollen - A command-line tool for interacting with TheHive☆35Updated 6 years ago
- Serverless honeytoken 🕵🏻♂️☆80Updated 2 years ago
- An implementation of infrastructure-as-code scanning using dynamic tooling.☆56Updated 3 years ago
- Tools related to work with Attack Flow (https://github.com/center-for-threat-informed-defense/attack-flow)☆44Updated 3 years ago
- The Purpose of this research tool is to provide a Python client into RiskIQ API services.☆22Updated 4 years ago
- Lightweight Python-Based Malware Analysis Pipeline☆35Updated 2 months ago
- ☆29Updated 8 months ago
- Automatic detection engineering technical state compliance☆55Updated last year
- Salesforce Policy Deviation Checker☆30Updated 4 years ago
- FLARE floss applied to all unpacked+dumped samples in Malpedia, pre-processed for further use.☆58Updated 3 months ago
- An open source Wireshark extcap to make ad hoc mirroring of AWS EC2 traffic easier☆19Updated 9 months ago
- A collection of my reverse engineering and malware analysis write-ups☆20Updated 4 years ago
- Provide a shell like interface by utilizing osquery's distributed API☆81Updated 5 years ago
- An npm package for extracting common IoC (Indicator of Compromise) from a block of text☆58Updated last week
- Public release of Whalehoney Honeypot☆29Updated 3 years ago
- egrets monitors egress☆46Updated 5 years ago
- Ansible scripts to build an attack box☆24Updated 6 years ago
- ☆28Updated last year
- Tools for Network Archaeology (internet protocol analysis)☆29Updated last year
- Cisco Orbital - Osquery queries by Talos☆134Updated last year
- Repository that contains a set of purposefully erroneous Yara rules.☆58Updated last month
- Carving tool based in Radare2 & Yara☆16Updated 6 years ago
- Decloak Linux stealth rootkits hiding data with this simple memory mapped IO investigation tool.☆25Updated 2 years ago
- unix_collector is a Live Response collection script for Incident Response on UNIX-like systems using native binaries. Supports AIX, Andro…☆37Updated 3 months ago