CERT-Polska / malduck
Malduck is your ducky companion in malware analysis journeys
☆324Updated 7 months ago
Alternatives and similar repositories for malduck:
Users that are interested in malduck are comparing it to the libraries listed below
- Malware repository component for samples & static configuration with REST API interface.☆339Updated last week
- A Binary Genetic Traits Lexer Framework☆483Updated this week
- Distributed malware processing framework based on Python, Redis and S3.☆401Updated 3 weeks ago
- MBC content in markdown☆405Updated last month
- Standard collection of rules for capa: the tool for enumerating the capabilities of programs☆566Updated last week
- YARA malware query accelerator (web frontend)☆421Updated this week
- Collection of malware persistence and hunting information. Be a persistent persistence hunter!☆173Updated 3 weeks ago
- c2 traffic☆189Updated 2 years ago
- Dynamic unpacker based on PE-sieve☆704Updated this week
- Assortment of hashing algorithms used in malware☆344Updated last week
- High Octane Triage Analysis☆709Updated this week
- Research notes☆117Updated 2 months ago
- Extract and Deobfuscate XLM macros (a.k.a Excel 4.0 Macros)☆575Updated 9 months ago
- A guide on how to write fast and memory friendly YARA rules☆135Updated this week
- ☆103Updated last year
- Automatic YARA rule generation for Malpedia☆156Updated 2 years ago
- The Volatility Collaborative GUI☆237Updated this week
- Generating YARA rules based on binary code☆205Updated 3 years ago
- Code snips and notes☆134Updated 2 years ago
- A golang CLI tool to download malware from a variety of sources.☆142Updated last year
- Collection of rules created using YARA-Signator over Malpedia☆127Updated 3 months ago
- YARA rule metadata specification and validation utility / Spécification et validation pour les règles YARA☆99Updated this week
- IOC from articles, tweets for archives☆313Updated last year
- Quickly debug shellcode extracted during malware analysis☆580Updated last year
- ☆198Updated last year
- ☆144Updated 2 years ago
- A YARA rules repository continuously updated for monitoring the old and new threats from articles, incidents responses ...☆138Updated last year
- File analysis and management framework.☆80Updated last year
- Arya is a unique tool that produces pseudo-malicious files meant to trigger YARA rules. You can think of it like a reverse YARA.☆242Updated 2 years ago
- Collection of private Yara rules.☆340Updated 2 months ago