ITAYC0HEN / APT-Ecosystem
This repository contains the website and the tools which are part of the joint research between Check Point Research and Intezer to map the connections inside the APT Ecosystem of Russia.
☆108Updated 5 years ago
Alternatives and similar repositories for APT-Ecosystem:
Users that are interested in APT-Ecosystem are comparing it to the libraries listed below
- Allows you to quickly query a Windows machine for RAM artifacts☆219Updated 4 years ago
- Personal compilation of APT malware from whitepaper releases, documents and own research☆259Updated 6 years ago
- ☆97Updated 4 years ago
- This repository contains all public indicators identified by 401trg during the course of our investigations. It also includes relevant ya…☆121Updated 3 years ago
- snake - a malware storage zoo☆219Updated last year
- Malware Sinkhole List in various formats☆102Updated 2 years ago
- Static based decoders for malware samples☆92Updated 4 years ago
- ☆134Updated 6 years ago
- Toolset for research malware and Cobalt Strike beacons☆207Updated 2 years ago
- A Yara rule generator for finding related samples and hunting☆158Updated 2 years ago
- ☆125Updated 2 weeks ago
- Repository containing IOCs, CSV and MISP JSON from our blogs☆79Updated 3 years ago
- Automatic YARA rule generation for Malpedia☆157Updated 2 years ago
- Malware/IOC ingestion and processing engine☆104Updated 6 years ago
- Miscellaneous Malware RE☆195Updated 2 years ago
- Cuckoo running in a nested hypervisor☆128Updated 4 years ago
- Knowledge base workflow management for YARA rules and C2 artifacts (IP, DNS, SSL) (ALPHA STATE AT THE MOMENT)☆98Updated last month
- A tool for de-obfuscating PowerShell scripts☆67Updated 5 years ago
- Proofpoint - Emerging Threats - Threat Research tools + publicly shared intel and documentation☆72Updated 2 months ago
- A mapping of used malware names to commonly known family names☆62Updated last year
- Telsy CTI Research Team☆57Updated 4 years ago
- Random hunting ordiented yara rules☆95Updated last year
- Minimal, consistent Python API for building integrations with malware sandboxes.☆138Updated last year
- Various config files obtained during malware analysis☆67Updated 6 years ago
- MoP - "Master of Puppets" - Advanced malware tracking framework☆82Updated 5 months ago
- Pafish Macro is a Macro enabled Office Document to detect malware analysis systems and sandboxes. It uses evasion & detection techniques …☆281Updated 7 years ago
- SysmonX - An Augmented Drop-In Replacement of Sysmon☆212Updated 5 years ago
- Sandbox feature upgrade with the help of wrapped samples☆76Updated 6 years ago
- Historical list of {Cobalt Strike,NanoHTTPD} servers☆122Updated 5 years ago
- Smart DLL execution for malware analysis in sandbox systems☆142Updated 10 years ago