PingTrip / Ansible_Cuckoo
☆18Updated 6 years ago
Alternatives and similar repositories for Ansible_Cuckoo:
Users that are interested in Ansible_Cuckoo are comparing it to the libraries listed below
- Malware similarity platform with modularity in mind.☆76Updated 3 years ago
- Community modules for FAME☆65Updated 2 months ago
- ☆53Updated 4 years ago
- Converting data from services like Censys and Shodan to a common data model☆49Updated 4 months ago
- A YARA Rule Performance Measurement Tool☆58Updated 11 months ago
- Generate a Yara rule to find base64-encoded files containg a specific keyword☆40Updated 6 years ago
- Repository for scripts and tips for "Yara Scan Service"☆20Updated last year
- Collection of YARA signatures from individual research☆42Updated last year
- Mass static malware analysis tool☆95Updated 2 years ago
- ☆41Updated 9 months ago
- An Incident Response tool that visualizes historic process execution evidence (based on Event ID 4688 - Process Creation Event) in a tree…☆59Updated 7 years ago
- An extendable tool to extract and aggregate IoCs from threat feeds☆33Updated 11 months ago
- pollen - A command-line tool for interacting with TheHive☆35Updated 5 years ago
- VSCode extension for the YARA pattern matching language☆63Updated last year
- A collection of typical false positive indicators☆55Updated 4 years ago
- Random hunting ordiented yara rules☆95Updated last year
- YETI (Your Everyday Threat Intelligence) Integration to Elastic Stack☆16Updated 4 years ago
- Threat hunting repo for my independent study on threat hunting with OSQuery☆28Updated 7 years ago
- Force-Directed Graph Generator for Volatility Ouputs☆26Updated 5 years ago
- Modular command-line threat hunting tool & framework.☆17Updated 4 years ago
- A Modular MWDB Utility to Collect Fresh Malware Samples☆34Updated 3 years ago
- Automatic detection engineering technical state compliance☆53Updated 6 months ago
- A collection of my public YARA signatures for various malware families☆29Updated 4 months ago
- Various capabilities for static malware analysis.☆75Updated 4 months ago
- This repository contains all the config files and scripts used for our Open Source Endpoint monitoring project.☆34Updated 5 years ago
- Website crawler with YARA detection☆88Updated last year
- A happy place for detection engineers, purple teamers and threat hunters focusing on macOS.☆21Updated 2 years ago
- CDPO is a tool to validate, de-duplicate, combine, query, and encrypt track data recovered from a breach.☆15Updated 7 years ago
- A repo to document API functions mapped to security events across diverse platforms☆74Updated 5 years ago
- Tool for automatic list generation of known TOR and VPN exit nodes☆29Updated last year