CERT-Polska / hfinger
Hfinger - fingerprinting HTTP requests
☆127Updated last year
Related projects: ⓘ
- SNIcat☆124Updated 3 years ago
- pyJARM is a library for doing JARM fingerprinting using python☆50Updated 3 years ago
- Website crawler with YARA detection☆87Updated last year
- A Go implementation of JARM☆119Updated 2 years ago
- Login Pages Database forms a knowledge base on login pages related to malicious activities (C2 panels, phishing kits...).☆37Updated last year
- Automatically create YARA rules from malicious documents.☆207Updated 2 years ago
- Extract indicators of compromise from text, including "escaped" ones.☆161Updated 4 years ago
- MoP - "Master of Puppets" - Advanced malware tracking framework☆82Updated 2 weeks ago
- A malware analysis and classification tool.☆193Updated 2 years ago
- A list of JARM hashes for different ssl implementations used by some C2/red team tools.☆136Updated last year
- Visually inspect and force decode YARA and regex matches found in both binary and text data. With Colors.☆99Updated 5 months ago
- simple YARA-based IOC scanner☆162Updated 3 weeks ago
- Knowledge base workflow management for YARA rules and C2 artifacts (IP, DNS, SSL) (ALPHA STATE AT THE MOMENT)☆94Updated 3 months ago
- Minimal, consistent Python API for building integrations with malware sandboxes.☆134Updated 7 months ago
- Terraform resources for building HTTP, DNS, phishing, and mail server red team infrastructure☆93Updated 5 years ago
- Melody is a transparent internet sensor built for threat intelligence. Supports custom tagging rules and vulnerable application simulatio…☆138Updated 3 years ago
- Malware Sinkhole List in various formats☆102Updated 2 years ago
- Toolset for research malware and Cobalt Strike beacons☆205Updated last year
- A YARA Rule Performance Measurement Tool☆58Updated 6 months ago
- A forensic evidence acquirer☆85Updated 3 years ago
- YARA rule metadata specification and validation utility / Spécification et validation pour les règles YARA☆93Updated 2 weeks ago
- XOR Key Extractor☆48Updated last month
- Malware similarity platform with modularity in mind.☆75Updated 3 years ago
- PcapMonkey will provide an easy way to analyze pcap using the latest version of Suricata and Zeek.☆142Updated 6 months ago
- Personal compilation of APT malware from whitepaper releases, documents and own research☆253Updated 5 years ago
- ☆94Updated this week
- Static Token And Credential Scanner☆94Updated last year
- A collection of scripts for dealing with Cobalt Strike beacons in Python☆167Updated 3 years ago
- Suricata Language Server is an implementation of the Language Server Protocol for Suricata signatures. It adds syntax check, hints and au…☆60Updated 4 months ago
- Django web interface for managing Yara rules☆189Updated 6 years ago