CAPESandbox / CAHI
CAPE Auto-Hardened Installer
☆21Updated 2 months ago
Related projects ⓘ
Alternatives and complementary repositories for CAHI
- MWDB exercises☆19Updated 5 months ago
- YARA rule analyzer to improve rule quality and performance☆93Updated 11 months ago
- 100 Days of YARA to be updated with rules & ideas as the year progresses☆56Updated last year
- JPCERT/CC public YARA rules repository☆103Updated 5 months ago
- Powershell sandboxing utility☆17Updated 3 weeks ago
- Documentation and parsers for different anti-virus quarantine formats.☆41Updated 3 years ago
- Alternative YARA scanning engine☆67Updated 2 years ago
- Various capabilities for static malware analysis.☆75Updated 2 months ago
- Carve file metadata from NTFS index ($I30) attributes☆61Updated 9 months ago
- Factual-rules-generator is an open source project which aims to generate YARA rules about installed software from a machine.☆76Updated 2 years ago
- Jupyter Notebooks for Cyber Threat Intelligence☆35Updated last year
- Python based CLI for MalwareBazaar☆36Updated 3 weeks ago
- YARA rule metadata specification and validation utility / Spécification et validation pour les règles YARA☆98Updated 2 months ago
- ☆27Updated 2 years ago
- Malware similarity platform with modularity in mind.☆76Updated 3 years ago
- ☆16Updated 6 months ago
- Scans a malware file and lists down the related MBC (Malware Behavior Catalog) details.☆20Updated 2 years ago
- Rules Shared by the Community from 100 Days of YARA 2023☆78Updated last year
- ☆23Updated last year
- Scripts and tools accompanying HP Threat Research blog posts and reports.☆49Updated 7 months ago
- Random hunting ordiented yara rules☆95Updated last year
- Hatching Triage public command-line utility and API library.☆65Updated last year
- Memory Baseliner is a script that can compare two windows memory images or perform frequency of occurrence / data stacking analysis on mu…☆49Updated last year
- The Linux DFIR Collector is a stand-alone collection tool for Gnu / Linux. Dump artifacts in json format with very few impacts on the hos…☆29Updated 2 years ago
- Generate YARA rules for OOXML documents.☆37Updated last year
- Elastic Security Labs releases☆52Updated 3 weeks ago
- ☆31Updated last month
- A repo for centralizing ongoing research on the new Windows 10/11 DFIR artifact, EventTranscript.db.☆39Updated 2 years ago
- The core backend server handling API requests and task management☆31Updated 2 weeks ago