Te-k / analyst-scripts
Scripts to analyze stuff
☆144Updated this week
Related projects ⓘ
Alternatives and complementary repositories for analyst-scripts
- Personal compilation of APT malware from whitepaper releases, documents and own research☆255Updated 5 years ago
- Valhalla API Client☆63Updated last year
- Knowledge base workflow management for YARA rules and C2 artifacts (IP, DNS, SSL) (ALPHA STATE AT THE MOMENT)☆96Updated 5 months ago
- Yara-Endpoint is a tool useful for incident response as well as anti-malware enpoint base on Yara signatures.☆104Updated 6 years ago
- Awesome VirusTotal Intelligence Search Queries☆329Updated last year
- Set of Yara rules for finding files using magics headers☆135Updated 4 years ago
- For all these times you're asking yourself "what is this panel again?"☆252Updated last year
- Set of Maltego transforms to inferface with a MISP Threat Sharing instance, and also to explore the whole MITRE ATT&CK dataset.☆170Updated 4 months ago
- ☆168Updated 4 months ago
- A VBA parser and emulation engine to analyze malicious macros.☆92Updated 2 weeks ago
- PROJECT PAUSED 1/11/22, Tracking Threat Actor Emails in Phishing Kits. CC @PhishKitTracker on twitter if you find a #threatactoremail in …☆99Updated 2 years ago
- Collecting & Hunting for IOCs with gusto and style☆237Updated 3 years ago
- Dump of organized knowledge on DFIR☆132Updated 3 years ago
- Python script to decode common encoded PowerShell scripts☆215Updated 6 years ago
- snake - a malware storage zoo☆217Updated last year
- Malware Analysis, Threat Intelligence and Reverse Engineering: LABS☆81Updated 3 years ago
- A modern Python-3-based alternative to RegRipper☆187Updated 2 weeks ago
- A tool designed to traverse phishing URL paths to search for phishing kit source code.☆89Updated last year
- A toolkit for Security Researchers☆124Updated 5 years ago
- Script lets you gather malicious software and c&c servers from open source platforms like Malshare, Malcode, Google, Cymon - vxvault, cyb…☆36Updated 5 years ago
- Miscellaneous Malware RE☆195Updated 2 years ago
- Cuckoo running in a nested hypervisor☆128Updated 4 years ago
- Mass static malware analysis tool☆91Updated 2 years ago
- Windows Live Artifacts Acquisition Script☆183Updated 2 years ago
- Dovehawk is a Zeek module that automatically imports MISP indicators and reports Sightings☆121Updated 3 years ago
- Yet another registry parser☆130Updated 2 years ago
- Open platform for modelling, collection and exchange of knowledge☆157Updated last week
- ☆347Updated 3 years ago