KasperskyLab / bitscout
☆23Updated 9 months ago
Alternatives and similar repositories for bitscout:
Users that are interested in bitscout are comparing it to the libraries listed below
- A Python library for parsing, manipulating, and generating MAEC content.☆41Updated 4 years ago
- This python scripts can calculate the WHOIS Similarity Distance between two given domains.☆29Updated 2 years ago
- Scalable Binary Data Extraction in Hadoop☆143Updated 10 years ago
- Specifications used in the MISP project including MISP core format☆51Updated 2 months ago
- Mass static malware analysis tool☆95Updated 3 years ago
- Sandbox feature upgrade with the help of wrapped samples☆76Updated 6 years ago
- Pythonic way to work with the galaxies defined there: https://github.com/MISP/misp-galaxy☆19Updated 4 months ago
- Yara-Endpoint is a tool useful for incident response as well as anti-malware enpoint base on Yara signatures.☆107Updated 7 years ago
- Balbuzard is a package of malware analysis tools in python to extract patterns of interest from suspicious files (IP addresses, domain na…☆135Updated 5 years ago
- Various config files obtained during malware analysis☆67Updated 6 years ago
- Python tools for IOC (Indicator of Compromise) handling☆96Updated 3 years ago
- Validates yara rules and tries to repair the broken ones.☆39Updated 4 years ago
- ☆53Updated 4 years ago
- Mystique may be used to discover infection markers that can be used to vaccinate endpoints against malware. It receives as input a malici…☆82Updated 7 years ago
- PE Import Hash Generator☆76Updated 7 years ago
- A Yara rule generator for finding related samples and hunting☆158Updated 2 years ago
- Knowledge base workflow management for YARA rules and C2 artifacts (IP, DNS, SSL) (ALPHA STATE AT THE MOMENT)☆100Updated 2 months ago
- threat-intelligence.eu website and repository of information about open standards, documents, methodologies and processes in threat intel…☆48Updated 2 years ago
- Translate STIX 2 Patterning Queries☆31Updated 6 years ago
- This is a script module for Bro that encapsulates and detects activity related to the Mandiant APT1 report.☆47Updated 11 years ago
- Sighting DB is designed to scale writing and reading a count of attributes, tracking when if was first and last seen☆16Updated 11 months ago
- ☆36Updated 8 years ago
- Python IOC Editor☆62Updated 10 years ago
- Yara is awesome, but sometimes you need to manipulate the data streams you're scanning in different ways.☆97Updated 10 years ago
- Extract common Windows artifacts from source images and VSCs☆65Updated 3 years ago
- Sample staging & detonation utility to be used in combination with Cuckoo Sandbox.☆83Updated last year
- Yara syntax highlighting☆25Updated 3 years ago
- Python tool and library to help analyze files during malware triage and analysis.☆78Updated 4 years ago
- Python interface to the CRITs API☆22Updated 8 years ago
- REST API based malware repository (abandoned)☆108Updated 9 years ago