RandomRhythm / Vendor-Threat-Triage-LookupLinks
Lookup file hashes, domain names and IP addresses using various vendors to assist with triaging potential threats.
☆29Updated 4 months ago
Alternatives and similar repositories for Vendor-Threat-Triage-Lookup
Users that are interested in Vendor-Threat-Triage-Lookup are comparing it to the libraries listed below
Sorting:
- Script for parsing Symantec Endpoint Protection logs, VBNs, and ccSubSDK database.☆64Updated 2 years ago
- YARA rule metadata specification and validation utility / Spécification et validation pour les règles YARA☆109Updated 6 months ago
- A parser of Windows Defender's DetectionHistory forensic artifact, containing substantial info about quarantined files and executables.☆114Updated 3 years ago
- Digital Forensics Artifacts Knowledge Base☆88Updated last week
- Signature engine for all your logs☆173Updated 2 years ago
- Collection of rules created using YARA-Signator over Malpedia☆141Updated last year
- Sysmon EDR POC Build within Powershell to prove ability.☆226Updated 4 years ago
- A Cobalt Strike Scanner that retrieves detected Team Server beacons into a JSON object☆170Updated 3 years ago
- HXTool is an extended user interface for the FireEye HX Endpoint product. HXTool can be installed on a dedicated server or on your physic…☆84Updated last year
- ☆151Updated last year
- Active C2 IoCs☆99Updated 3 years ago
- Open Dataset of Cobalt Strike Beacon metadata (2018-2022)☆127Updated 3 years ago
- Anything Sysmon related from the MSTIC R&D team☆155Updated last year
- A library for fast parse & import of Windows Eventlogs into Elasticsearch.☆85Updated 5 months ago
- Analysis of file (doc, pdf, exe, ...) in deep (emmbedded file(s)) with clamscan and yara rules☆50Updated 2 years ago
- Powershell Event Tracing Toolbox☆78Updated 3 years ago
- Yara Based Detection Engine for web browsers☆50Updated 4 years ago
- A honeypot for the Log4Shell vulnerability (CVE-2021-44228).☆92Updated 11 months ago
- ☆226Updated 3 years ago
- OSSEM Data Dictionaries☆65Updated 10 months ago
- Random hunting ordiented yara rules☆97Updated 2 years ago
- ☆131Updated last year
- ☆147Updated last month
- A list of JARM hashes for different ssl implementations used by some C2/red team tools.☆144Updated 2 years ago
- ☆88Updated 3 months ago
- This script is made to collect the most valiable artifacts for foreniscs or incident reponse investigation rather than imaging the whole …☆205Updated 5 years ago
- YARA rule analyzer to improve rule quality and performance☆107Updated 7 months ago
- Hatching Triage public command-line utility and API library.☆74Updated 2 years ago
- Collection of YARA rules designed for usage through VirusTotal.com.☆79Updated last year
- YaraScanner is a file pattern-matching tool based on YARA rules.☆59Updated 2 years ago