REMnux / salt-statesLinks
This repository maintains the SaltStack state files for the REMnux distro.
☆50Updated this week
Alternatives and similar repositories for salt-states
Users that are interested in salt-states are comparing it to the libraries listed below
Sorting:
- Threat intelligence and threat detection indicators (IOC, IOA)☆52Updated 4 years ago
- Simple yara rule manager☆66Updated 2 years ago
- Yet another registry parser☆133Updated 3 years ago
- Random hunting ordiented yara rules☆97Updated 2 years ago
- Malware similarity platform with modularity in mind.☆78Updated 4 years ago
- A VBA parser and emulation engine to analyze malicious macros.☆96Updated 3 weeks ago
- Community modules for FAME☆65Updated 6 months ago
- Set of Yara rules for finding files using magics headers☆138Updated 4 years ago
- Hatching Triage public command-line utility and API library.☆70Updated last year
- Tools and script for my remnux/sift installation☆25Updated 2 weeks ago
- Repository containing IOCs, CSV and MISP JSON from our blogs☆81Updated 4 years ago
- unix_collector is a Live Response collection script for Incident Response on UNIX-like systems using native binaries. Supports AIX, Andro…☆37Updated 2 months ago
- A Splunk Technology Add-on to forward filtered ETW events.☆30Updated 4 years ago
- Collection of YARA signatures from individual research☆44Updated last year
- Extract BITS jobs from QMGR queue and store them as CSV records☆75Updated 5 months ago
- Automagically extract forensic timeline from volatile memory dump☆132Updated last year
- Repository with Sample threat hunting notebooks on Security Event Log Data Sources☆65Updated 2 years ago
- HXTool is an extended user interface for the FireEye HX Endpoint product. HXTool can be installed on a dedicated server or on your physic…☆84Updated last year
- Yara-Endpoint is a tool useful for incident response as well as anti-malware enpoint base on Yara signatures.☆109Updated 7 years ago
- MAEC Schemas and Schema Development☆88Updated 5 years ago
- This script scans the files extracted by Zeek with YARA rules located on the rules folder on a Linux based Zeek sensor, if there is a mat…☆62Updated last year
- ☆77Updated 6 years ago
- YARA rule metadata specification and validation utility / Spécification et validation pour les règles YARA☆106Updated 2 months ago
- Various capabilities for static malware analysis.☆78Updated 11 months ago
- A modern Python-3-based alternative to RegRipper☆196Updated 4 months ago
- Incident response teams usually working on the offline data, collecting the evidence, then analyze the data☆45Updated 3 years ago
- Hunt malware with Volatility☆47Updated last month
- EVTXtract recovers and reconstructs fragments of EVTX log files from raw binary data, including unallocated space and memory images.☆195Updated 4 months ago
- Core server components for Assemblyline 4 (Alerter, dispatcher, expiry, ingester, scaler, updater, ...)☆21Updated last week
- Stand-alone parser for User Access Logging from Server 2012 and newer systems☆75Updated last year