DissectMalware / pyOneNote
A python library to parse OneNote (.one) files
☆122Updated 4 months ago
Related projects ⓘ
Alternatives and complementary repositories for pyOneNote
- A guide on how to write fast and memory friendly YARA rules☆126Updated last year
- Rules shared by the community from 100 Days of YARA 2024☆79Updated 7 months ago
- The Windows Malware Analysis Reversing Core Tools☆89Updated 3 years ago
- Rules Shared by the Community from 100 Days of YARA 2023☆78Updated last year
- YARA rule analyzer to improve rule quality and performance☆93Updated last year
- A ProcessMonitor visualization application written in rust.☆176Updated last year
- BlackBerry Threat Research & Intelligence☆93Updated last year
- A C# based tool for analysing malicious OneNote documents☆107Updated last year
- A YARA rules repository continuously updated for monitoring the old and new threats from articles, incidents responses ...☆138Updated last year
- A golang CLI tool to download malware from a variety of sources.☆141Updated 9 months ago
- ☆62Updated this week
- Elastic Security Labs releases☆52Updated 3 weeks ago
- A Jupyter notebook to assist with the analysis of the output generated from Volatility memory extraction framework.☆94Updated last year
- Signature-based detection of malware features based on Windows API call sequences. It's like YARA for sandbox API traces!☆82Updated last year
- Detection Engineering with YARA☆85Updated 10 months ago
- ☆92Updated this week
- JPCERT/CC public YARA rules repository☆104Updated 5 months ago
- ☆222Updated 6 months ago
- Unprotect is a python tool for parsing PE malware and extract evasion techniques.☆111Updated last year
- ☆100Updated last year
- Python based CLI for MalwareBazaar☆36Updated 3 weeks ago
- Malware Configuration Extraction Modules☆47Updated last year
- Repository of Yara Rules☆89Updated last month
- A Feature Rich Modular Malware Configuration Extraction Utility for MalDuck☆124Updated last year
- A repository hosting example goodware evtx logs containing sample software installation and basic user interaction☆68Updated last year
- File analysis and management framework.☆72Updated last year
- Use YARA rules on Time Travel Debugging traces☆86Updated last year
- Scripts and tools accompanying HP Threat Research blog posts and reports.☆49Updated 7 months ago
- A small program written in C that is designed to load 32/64-bit shellcode and allow for execution or debugging. Can also output PE files …☆125Updated 4 months ago
- Dump quarantined files from Windows Defender☆56Updated 2 years ago