CybercentreCanada / assemblyline-baseLinks
Base components for Assemblyline 4 (Datastore, ODM, Filestore, Remote Datatypes, utils function, etc...)
☆71Updated last week
Alternatives and similar repositories for assemblyline-base
Users that are interested in assemblyline-base are comparing it to the libraries listed below
Sorting:
- YARA rule metadata specification and validation utility / Spécification et validation pour les règles YARA☆113Updated 6 months ago
- This repository contains analysis scripts, YARA rules, and additional IoCs related to our Telekom Security blog posts.☆119Updated last year
- Automatically create YARA rules from malicious documents.☆211Updated 3 years ago
- Core server components for Assemblyline 4 (Alerter, dispatcher, expiry, ingester, scaler, updater, ...)☆21Updated last week
- Python library for threat intelligence☆91Updated 10 months ago
- Random hunting ordiented yara rules☆98Updated 2 years ago
- Simple yara rule manager☆66Updated 2 years ago
- Various capabilities for static malware analysis.☆79Updated last year
- Digital Forensics Artifacts Knowledge Base☆88Updated 2 weeks ago
- TAPIR is a multi-user, client/server, incident response framework☆47Updated 3 years ago
- A guide on how to write fast and memory friendly YARA rules☆157Updated 10 months ago
- Malware similarity platform with modularity in mind.☆79Updated 4 years ago
- JPCERT/CC public YARA rules repository☆110Updated 3 weeks ago
- YARA rule analyzer to improve rule quality and performance☆107Updated 8 months ago
- The Threat Hunting In Rapid Iterations (THIRI) Jupyter notebook is designed as a research aide to let you rapidly prototype threat huntin…☆154Updated 3 years ago
- Research indicators and detection rules☆67Updated 2 years ago
- Cisco Orbital - Osquery queries by Talos☆136Updated last year
- Hatching Triage public command-line utility and API library.☆74Updated 2 years ago
- A community event for security researchers to share their favorite notebooks☆109Updated last year
- Valhalla API Client☆70Updated 2 years ago
- Analyse a forensic target (such as a directory) to find and report files found and not found from CIRCL hashlookup public service - https…☆127Updated 2 years ago
- Incident response teams usually working on the offline data, collecting the evidence, then analyze the data☆45Updated 3 years ago
- A collection of tips for using MISP.☆75Updated last year
- A toolkit for the post-mortem examination of Docker containers from forensic HDD copies☆106Updated last year
- The Intelligent Process Lifecycle of Active Cyber Defenders☆33Updated 2 years ago
- Threat intelligence and threat detection indicators (IOC, IOA)☆52Updated 5 years ago
- A YARA Rule Performance Measurement Tool☆61Updated last year
- Yara Based Detection Engine for web browsers☆51Updated 4 years ago
- This repository maintains the SaltStack state files for the REMnux distro.☆53Updated 2 weeks ago
- Automagically extract forensic timeline from volatile memory dump☆132Updated last year