TKCERT / winnti-nmap-script
Nmap Script to scan for Winnti infections
☆70Updated 6 years ago
Alternatives and similar repositories for winnti-nmap-script
Users that are interested in winnti-nmap-script are comparing it to the libraries listed below
Sorting:
- A bunch of scripts I use to work with urlscan.io☆34Updated 5 years ago
- SMTP server / sinkhole for collecting spam☆44Updated 6 years ago
- BTG's purpose is to make fast and efficient search on IOC☆70Updated 6 years ago
- Credential Phish Analysis and Automation☆96Updated 6 years ago
- Slides from various talks that I've given over the years☆118Updated last year
- Sandbox feature upgrade with the help of wrapped samples☆76Updated 6 years ago
- Generate ATT&CK Navigator layer file from PowerShell Empire agent logs☆49Updated 6 years ago
- A python script to query the MITRE ATT&CK API for tactics, techniques, mitigations, & detection methods for specific threat groups.☆66Updated 6 years ago
- A collection of scripts that I've written while pentesting.☆31Updated 6 years ago
- Detect and log CVE-2019-19781 scan and exploitation attempts.☆114Updated 5 years ago
- No-Script Automation Tool☆56Updated 6 years ago
- threat-intelligence.eu website and repository of information about open standards, documents, methodologies and processes in threat intel…☆48Updated 2 years ago
- Scout - a Contactless Active Reconnaissance Tool☆52Updated 2 years ago
- Stop searching for sample hashes on 10 different sites.☆66Updated 6 years ago
- Utility to generate similar IDN domain names☆48Updated 7 years ago
- Clustering NMAP XML results to help make sense of large scan results.☆33Updated 2 years ago
- A collection of infosec related scripts and information.☆53Updated 7 months ago
- Centralize Management of Intrusion Detection System like Suricata Bro Ossec ...☆72Updated 6 years ago
- A toolkit for Security Researchers☆127Updated 5 years ago
- Security Onion Elastic Stack☆46Updated 4 years ago
- Sysmon configuration file template with default high-quality event tracing☆17Updated 4 years ago
- Real Time Threat Monitoring Tool☆112Updated 2 years ago
- Parse URLCrazy and dnstwist output and compare against previous runs to identify new typosquatted domains.☆51Updated 9 years ago
- A testing framework for mail security and filtering solutions.☆244Updated last year
- A framework to generate unique test cases based on code snippets to test techniques☆56Updated 4 years ago
- The Shodan monitoring tools allows you to monitor shodan listed servers basis on the filter you provided☆33Updated 3 years ago
- Creates dictionaries based on Wikipedia titles☆61Updated 5 years ago
- ☆61Updated 7 years ago
- ☆59Updated 6 years ago
- A collection of typical false positive indicators☆55Updated 4 years ago