CERT-Polska / karton-config-extractor
Static configuration extractor for the Karton framework
☆10Updated 4 months ago
Alternatives and similar repositories for karton-config-extractor
Users that are interested in karton-config-extractor are comparing it to the libraries listed below
Sorting:
- The Multiplatform Linux Sandbox☆15Updated last year
- Generates YARA rules to detect malware using API hashing☆17Updated 4 years ago
- Tool to decrypt the configuration of NanoCore and dump all used plugins☆10Updated 4 years ago
- Maltego transforms to pivot between PE files based on their VirusTotal codeblocks☆18Updated 3 years ago
- Royal Road RTF Weaponizer object decoder☆24Updated 7 months ago
- Utilities for working with vivisect☆25Updated 2 months ago
- Specialized tool to dump Position Independent Code.☆22Updated 4 years ago
- ☆33Updated 3 years ago
- Windows Event Log Knowledge Base☆24Updated 7 months ago
- ☆13Updated 4 years ago
- Steezy - Ghetto Yara Generation☆15Updated 2 years ago
- Scripts, Yara rules and other files developed during malware investigations☆25Updated 2 years ago
- ☆13Updated 2 years ago
- This repository regroups the Yara Rules for the Unprotect Project☆25Updated 4 years ago
- Generate YARA rules for OOXML documents.☆38Updated last year
- TA505 unpacker Python 2.7☆47Updated 4 years ago
- Rekall Memory Forensic Framework☆32Updated 5 years ago
- ☆23Updated 4 years ago
- ConventionEngine - A Yara Rulepack for PDB Path Hunting☆38Updated 2 years ago
- Imphash-like calculation on Golang binaries☆49Updated 2 years ago
- Converts exported results of CAPA tool from .json format to another formats supporting by different tools.☆22Updated 3 years ago
- Tools for inspecting YARA bytecode☆17Updated 4 years ago
- Malware Muncher is a proof-of-concept Python script that utilizes the Frida framework for binary instrumentation and API hooking, enablin…☆44Updated 2 years ago
- Emulates the VirusTotal "vt" YARA module for livehunt rule debugging/testing☆21Updated last year
- ☆18Updated 4 years ago
- Collection of generic YARA rules☆16Updated 11 months ago
- Trace ScriptBlock execution for powershell v2☆40Updated 5 years ago
- Repository of tools, YARA rules, and code-snippets from Stairwell's research team.☆22Updated last year
- A collection of Indicators of Compromise (IoCs), most aligning with samples derived from the signatures in the YARA-Signatures repo☆29Updated 4 years ago
- ☆22Updated 4 years ago