DCSO / Blog_CyTec
Repository to provide files related to our blog articles.
☆16Updated last year
Alternatives and similar repositories for Blog_CyTec
Users that are interested in Blog_CyTec are comparing it to the libraries listed below
Sorting:
- We publish indicators of compromise related to our stories here. See https://blog.team-cymru.com/ for more information.☆9Updated 3 years ago
- ☆22Updated 4 years ago
- Simplified go-cat agent for caldera☆10Updated last year
- Links to malware-related YARA rules☆15Updated 2 years ago
- Threat Detection Rules (Snort/Sigma/Yara)☆13Updated last year
- Decloak Linux stealth rootkits hiding data with this simple memory mapped IO investigation tool.☆24Updated 2 years ago
- DeepToad is a library and a tool to clusterize similar files using fuzzy hashing☆20Updated 5 years ago
- Threat Feeds, Threat lists, and regular lists of known IP ranges and domains. It updates every 4 hours.☆16Updated 3 years ago
- ☆15Updated 3 years ago
- Static configuration extractor for the Karton framework☆10Updated 4 months ago
- ☆14Updated 6 years ago
- Carving tool based in Radare2 & Yara☆16Updated 6 years ago
- #️⃣ 🕸️ 👤 HTTP Headers Hashing☆13Updated last year
- Generic Signature Format for SIEM Systems☆14Updated 3 years ago
- This script will pull and analyze syscalls in given application(s) allowing for easier security research purposes☆21Updated 4 years ago
- Analytics for Accounting logs from Network devices☆17Updated 4 years ago
- A collection of Indicators of Compromise (IoCs), most aligning with samples derived from the signatures in the YARA-Signatures repo☆29Updated 4 years ago
- HTTP Headers Hashing (HHHash) is a technique used to create a fingerprint of an HTTP server based on the headers it returns.☆76Updated last year
- Threat Mapping Catalogue☆17Updated 3 years ago
- A collection of tools adversaries commonly use in an attack.☆14Updated 5 months ago
- Tracking APT IOCs☆25Updated 4 years ago
- Sample staging & detonation utility to be used in combination with Cuckoo Sandbox.☆11Updated 3 months ago
- F-Secure Lightweight Acqusition for Incident Response (FLAIR)☆16Updated 3 years ago
- Automate the regular transfer of AIS data into a MISP Server☆9Updated 11 months ago
- The Multiplatform Linux Sandbox☆15Updated last year
- Parser for Windows PowerShell script block logs☆13Updated 4 months ago
- ☆15Updated 3 years ago
- This is a repository for the public blog with Labs indicators of compromise.☆10Updated 5 years ago
- Audit Powershell and search from known keywords in history #Blueteam☆25Updated 5 years ago
- ☆20Updated 4 years ago