ORKL / library
Collection of original report and metadata files that are used by ORKL
☆33Updated last month
Related projects: ⓘ
- Modular malware analysis artifact collection and correlation framework☆49Updated 4 months ago
- Repository of tools, YARA rules, and code-snippets from Stairwell's research team.☆21Updated 7 months ago
- Python based CLI for MalwareBazaar☆36Updated 9 months ago
- Factual-rules-generator is an open source project which aims to generate YARA rules about installed software from a machine.☆74Updated 2 years ago
- Lightweight Python-Based Malware Analysis Pipeline☆29Updated this week
- Reads and prints information from the website MalAPI.io☆19Updated 2 years ago
- Python library to query various sources of threat intelligence for data on domains, file hashes, and IP addresses.☆30Updated 10 months ago
- Jupyter Notebooks for Cyber Threat Intelligence☆35Updated last year
- Scans a malware file and lists down the related MBC (Malware Behavior Catalog) details.☆19Updated 2 years ago
- Can you pay the ransom in your country?☆13Updated 9 months ago
- Core server components for Assemblyline 4 (Alerter, dispatcher, expiry, ingester, scaler, updater, ...)☆19Updated this week
- YAFRA is a semi-automated framework for analyzing and representing reports about IT Security incidents.☆27Updated 2 years ago
- This repository contains sample log data that were collected after running adversary simulations in Microsoft 365☆18Updated 6 months ago
- MasterParser is a simple, all-in-one, digital forensics artifact parser☆23Updated 3 years ago
- Scripts and tools accompanying HP Threat Research blog posts and reports.☆48Updated 5 months ago
- Standardized Malware Analysis Tool☆51Updated 3 years ago
- MISP sighting server is a fast sighting server to store and look-up sightings on attributes (network indicators, file hashes, system indi…☆15Updated 8 months ago
- Converts Sigma detection rules to a Splunk alert configuration.☆13Updated 3 years ago
- Steezy - Ghetto Yara Generation☆15Updated last year
- ☆15Updated 2 years ago
- C2 Active Scanner☆45Updated 3 months ago
- Documentation and parsers for different anti-virus quarantine formats.☆41Updated 3 years ago
- 100 Days of YARA to be updated with rules & ideas as the year progresses☆57Updated last year
- Surface Analysis System on Cloud☆19Updated 9 months ago
- Scripts and lists to help generate YARA friendly string mutations☆19Updated last year
- Because phishtank was taken.. explore phishing kits in a contained environment!☆43Updated 2 years ago
- Collection of scripts used to analyse malware or emails☆19Updated 3 years ago
- Malware similarity platform with modularity in mind.☆75Updated 3 years ago
- A script to assist in processing forensic RAM captures for malware triage☆27Updated 3 years ago
- Creating a Feed of MISP Events from ThreatFox (by abuse.ch)☆19Updated 3 years ago