CybercentreCanada / assemblyline-baseLinks
Base components for Assemblyline 4 (Datastore, ODM, Filestore, Remote Datatypes, utils function, etc...)
☆70Updated this week
Alternatives and similar repositories for assemblyline-base
Users that are interested in assemblyline-base are comparing it to the libraries listed below
Sorting:
- YARA rule metadata specification and validation utility / Spécification et validation pour les règles YARA☆114Updated last week
- Core server components for Assemblyline 4 (Alerter, dispatcher, expiry, ingester, scaler, updater, ...)☆21Updated this week
- This repository contains analysis scripts, YARA rules, and additional IoCs related to our Telekom Security blog posts.☆120Updated 2 years ago
- Automatically create YARA rules from malicious documents.☆212Updated 3 years ago
- Simple yara rule manager☆66Updated 3 years ago
- Python library for threat intelligence☆93Updated last year
- Cerebrate is an open-source platform meant to act as a trusted contact information provider and interconnection orchestrator for other se…☆91Updated last week
- Malware similarity platform with modularity in mind.☆80Updated 4 years ago
- Various capabilities for static malware analysis.☆79Updated last year
- Cisco Orbital - Osquery queries by Talos☆136Updated last year
- Valhalla API Client☆70Updated last week
- Random hunting ordiented yara rules☆98Updated 2 years ago
- Digital Forensics Artifacts Knowledge Base☆89Updated 3 weeks ago
- acquire is a tool to quickly gather forensic artifacts from disk images or a live system into a lightweight container.☆115Updated this week
- The Threat Hunting In Rapid Iterations (THIRI) Jupyter notebook is designed as a research aide to let you rapidly prototype threat huntin…☆154Updated 3 years ago
- A collection of tips for using MISP.☆75Updated last year
- TAPIR is a multi-user, client/server, incident response framework☆47Updated 3 years ago
- A CALDERA plugin☆79Updated 3 months ago
- This script is made to collect the most valiable artifacts for foreniscs or incident reponse investigation rather than imaging the whole …☆209Updated 5 years ago
- Automagically extract forensic timeline from volatile memory dump☆132Updated last year
- This repository maintains the SaltStack state files for the REMnux distro.☆54Updated last week
- Analyse a forensic target (such as a directory) to find and report files found and not found from CIRCL hashlookup public service - https…☆128Updated 2 years ago
- HXTool is an extended user interface for the FireEye HX Endpoint product. HXTool can be installed on a dedicated server or on your physic…☆84Updated last year
- Threat intelligence and threat detection indicators (IOC, IOA)☆52Updated 5 years ago
- Set of Yara rules for finding files using magics headers☆141Updated 5 years ago
- A community event for security researchers to share their favorite notebooks☆108Updated last year
- A toolkit for the post-mortem examination of Docker containers from forensic HDD copies☆107Updated last year
- Hatching Triage public command-line utility and API library.☆74Updated 2 years ago
- A new Cyber Threat Intelligence Capability Maturity Model (CTI-CMM) to empower your team and create lasting value. Inspired by Industry N…☆41Updated 8 months ago
- Incident response teams usually working on the offline data, collecting the evidence, then analyze the data☆45Updated 4 years ago