NextronSystems / thor-lite
Fast IOC and YARA Scanner
☆76Updated 4 years ago
Alternatives and similar repositories for thor-lite:
Users that are interested in thor-lite are comparing it to the libraries listed below
- This repository is for Indicators of Compromise (IOCs) from Zscaler ThreatLabz public reports☆67Updated 2 months ago
- ☆65Updated 2 weeks ago
- Forensic Artifact Collection Tool Matrix☆81Updated 3 months ago
- ☆86Updated last year
- A collection of tips for using MISP.☆74Updated 2 months ago
- Digital Forensics Artifacts Knowledge Base☆77Updated 8 months ago
- Full of public notes and Utilities☆97Updated this week
- Invoke-Forensics provides PowerShell commands to simplify working with the forensic tools KAPE and RegRipper.☆112Updated last year
- A GeoIP lookup utility utilizing ipinfo.io services.☆84Updated last year
- ATT&CK Powered Suit is a browser extension that puts the complete MITRE ATT&CK® knowledge base at your fingertips with text search, conte…☆76Updated 3 months ago
- CyberChef - Detection Engineering, TI, DFIR, Malware Analysis Edition☆63Updated 2 years ago
- A repo hosting the Markua content for the EZ Tools manuals hosted on Leanpub☆65Updated last year
- Repository of public reference frameworks for the DFIR community.☆115Updated last year
- evtx-hunter helps to quickly spot interesting security-related activity in Windows Event Viewer (EVTX) files.☆150Updated 3 years ago
- Technical add-on for Splunk related to TheHive/Cortex from TheHive project☆52Updated 2 weeks ago
- Project based on RegRipper, to extract add'l value/pivot points from TLN events file☆82Updated last week
- Further investigation in to APT campaigns disclosed by private security firms and security agencies☆85Updated 2 years ago
- Repository for SPEED SIEM Use Case Framework☆53Updated 4 years ago
- pySigma Splunk backend☆36Updated 3 weeks ago
- Pathfinder is a plugin for mapping network vulnerabilities, scanned by CALDERA or imported by a supported network scanner, and translatin…☆125Updated 9 months ago
- Security Onion + Automation + Response Lab including n8n and Velociraptor☆107Updated 2 years ago
- Blueteam operational triage registry hunting/forensic tool.☆145Updated last year
- This repository contains helper scripts and custom configs to get the best out of Google's Timesketch project.☆102Updated last year
- ReWrite of AChoir in Go for Cross Platform☆38Updated last week
- Detection Ideas & Rules repository.☆179Updated 3 years ago
- Dettectinator - The Python library to your DeTT&CT YAML files.☆108Updated last month
- A curated list of KAPE-related resources☆161Updated 9 months ago
- Run Velociraptor on Security Onion☆37Updated 2 years ago
- Endpoint detection for remote hosts for consumption by RITA and Elasticsearch☆68Updated last year
- This guide describes a process for developing Cyber Threat Intelligence Priority Intelligence Requirements☆115Updated last year