SIFalcon / Detection
☆22Updated last year
Alternatives and similar repositories for Detection:
Users that are interested in Detection are comparing it to the libraries listed below
- Modular malware analysis artifact collection and correlation framework☆53Updated 9 months ago
- A collection of Tools and Rules for decoding Brute Ratel C4 badgers☆62Updated 2 years ago
- ☆18Updated 10 months ago
- ☆16Updated 3 years ago
- The repository accompanying the Buer Emulation workshop☆24Updated 3 years ago
- Repository of Yara rules created by the Stratosphere team☆26Updated 3 years ago
- ☆34Updated 2 years ago
- Generates YARA rules to detect malware using API hashing☆17Updated 3 years ago
- Scripts, Yara rules and other files developed during malware investigations☆25Updated 2 years ago
- ProcDot Malware Sandbox☆22Updated 3 months ago
- Tool to manage user privileges☆28Updated 5 years ago
- ☆33Updated 2 years ago
- Unpacking and decryption tools for the Emotet malware☆46Updated 3 years ago
- ☆23Updated 4 years ago
- My Malware Analysis Reports☆19Updated 2 years ago
- QuasarRAT analysis tools and research report☆25Updated last year
- AMSI detection PoC☆31Updated 4 years ago
- Generate YARA rules for OOXML documents.☆38Updated last year
- A list of IOCs applicable to PoshC2☆24Updated 4 years ago
- This is a repo for fetching Applocker event log by parsing the win-event log☆30Updated 2 years ago
- A proof-of-concept created for academic/learning purposes, demonstrating both local and remote use of VSTO "Add-In's" maliciously☆31Updated 2 years ago
- Specialized tool to dump Position Independent Code.☆21Updated 4 years ago
- Collection of generic YARA rules☆15Updated 8 months ago
- Automatically spider the result set of a Censys/Shodan search and download all files where the file name or folder path matches a regex.☆27Updated last year
- ☆22Updated 8 months ago
- ☆15Updated 3 years ago
- A project created with an aim to emulate and test exfiltration of data over different network protocols.☆31Updated last year
- C# Implementation of Jared Atkinson's Get-InjectedThread.ps1☆51Updated 3 years ago
- Tweettioc Splunk App☆20Updated 4 years ago