ZPetricusic / defender_signature_parserLinks
Short Python script for parsing Defender VDM signature files.
☆10Updated last year
Alternatives and similar repositories for defender_signature_parser
Users that are interested in defender_signature_parser are comparing it to the libraries listed below
Sorting:
- ☆31Updated 11 months ago
- Rule Engine for Dynamic Malware Analysis and Research☆25Updated 9 months ago
- Contains all the applications developed for the Second part of the 7th Edition of Windows Internals book☆115Updated last year
- a tiny program to consume from ETW providers for research☆54Updated last year
- rpv-web is a browser based frontend for the rpv library☆26Updated 2 months ago
- Windows kernel PDB data parsed into YAML☆42Updated 3 months ago
- ☆57Updated 2 years ago
- ☆21Updated 2 years ago
- Proof-of-concept modular implant platform leveraging v8☆54Updated 11 months ago
- ☆29Updated 2 years ago
- Deobfuscation library for PoisionPlug.SHADOW's ScatterBrain obfuscator☆75Updated 10 months ago
- ☆16Updated 2 years ago
- bootloaders.io is a curated list of known malicious bootloaders for various operating systems. The project aims to assist security profes…☆68Updated 2 years ago
- AppContainer tools for launching sandboxed win32 apps, changing ACL permissions and learning from ETW traces.☆30Updated 9 months ago
- Microsoft Vulnerable Driver Block Lists in CSV and JSON for SIEM lookups☆53Updated 4 months ago
- ☆39Updated 2 years ago
- Code samples that serve as references for Windows API functions☆76Updated last year
- Recon 2023 slides and code☆80Updated 2 years ago
- ☆90Updated last year
- ☆11Updated 3 years ago
- An example of how to use Microsoft Windows Warbird technology☆91Updated 2 years ago
- A feed of malware samples curated from threat intelligence sources.☆28Updated 2 years ago
- Vibe Malware Triage - MCP server for static PE analysis.☆74Updated 2 months ago
- Malware Muncher is a proof-of-concept Python script that utilizes the Frida framework for binary instrumentation and API hooking, enablin…☆45Updated 2 years ago
- How to set up 2 VirtualBox VM to debug kernel driver using windbg☆57Updated 3 years ago
- Virtual Trust Level (VTL 1) secure call tracing☆95Updated 5 months ago
- Winbindex bot to pull in binaries for specific releases☆48Updated 2 years ago
- The Console Monitor Driver is a KMDF kernel-mode filter driver that captures certain Fast I/O operations (input and output) that is sent …☆41Updated 3 years ago
- OffensiveCon 2024 Repo, contains PoCs and materials for talk "UEFI and the Task of the Translator"☆43Updated last year
- ☆48Updated 8 months ago