Collecting & Hunting for IOCs with gusto and style
☆117Aug 9, 2018Updated 7 years ago
Alternatives and similar repositories for rastrea2r
Users that are interested in rastrea2r are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Some IR notes☆73Jul 23, 2016Updated 9 years ago
- Cli interface to threatcrowd.org☆20Jul 6, 2017Updated 8 years ago
- InvestigationPlaybookSpec☆71Sep 26, 2017Updated 8 years ago
- FireEye Alert json files to MISP Malware information sharing plattform (Alpha)☆32Jun 11, 2017Updated 8 years ago
- IOC (Indicator of Compromise) Extractor: a program to help extract IOCs from text files.☆135Jan 14, 2016Updated 10 years ago
- Auxiliary scripts for Incident Response with ELK☆11Oct 7, 2015Updated 10 years ago
- Tool to extract indicators of compromise from security reports in PDF format☆439Feb 24, 2023Updated 3 years ago
- Assorted classes and methods for indexing reports and retrieving information from an elastic index☆21Jul 5, 2016Updated 9 years ago
- Simple Distributed IOC Scanner☆12Jul 27, 2015Updated 10 years ago
- A browser extension that seamlessly integrates your yara match notifications into VirusTotal Intelligence.☆17Feb 8, 2015Updated 11 years ago
- Parse Yara rules and operate over them more easily.☆51Jan 7, 2019Updated 7 years ago
- Server for receiving autorun data from the clients☆13Sep 26, 2017Updated 8 years ago
- DPS' Lightweight Investigation Notebook☆433Dec 31, 2023Updated 2 years ago
- Threat Intelligence APIs☆281Aug 14, 2023Updated 2 years ago
- Web App for Volatility framework☆390Jan 13, 2026Updated 2 months ago
- ☆519Jan 26, 2021Updated 5 years ago
- Scalable Binary Data Extraction in Hadoop☆144Jul 14, 2014Updated 11 years ago
- Threat Analysis, Reconnaissance, and Data Intelligence System☆129Aug 28, 2015Updated 10 years ago
- An informational repo about hunting for adversaries in your IT environment.☆1,859Nov 17, 2021Updated 4 years ago
- Yara rules I've written☆10Dec 9, 2015Updated 10 years ago
- integrating bro into yara☆33Dec 9, 2014Updated 11 years ago
- Hunting IOCs all day every day...☆88Sep 26, 2023Updated 2 years ago
- Automated, Collection, and Enrichment Platform☆324Nov 14, 2019Updated 6 years ago
- Monitor JSON notifications feed from VT☆17Jun 13, 2017Updated 8 years ago
- A Powershell incident response framework☆1,640Nov 22, 2022Updated 3 years ago
- Incident Response Forensic Framework☆612Nov 20, 2019Updated 6 years ago
- ssdeep based clustering tool☆14Jan 17, 2016Updated 10 years ago
- Automated IOC-Generation scripts and tools☆24Sep 14, 2016Updated 9 years ago
- Carves EXEs from given data files, using intelligent carving based upon PE headers☆38May 2, 2017Updated 8 years ago
- Web based analysis platform for use with the AWS_IR command line tool.☆17Aug 4, 2016Updated 9 years ago
- DEPRECATED - USE v3 (bearded-avenger)☆229Jan 16, 2018Updated 8 years ago
- An NTFS journal parser☆80Mar 3, 2016Updated 10 years ago
- Sandia Cyber Omni Tracker (SCOT)☆253Nov 4, 2024Updated last year
- Network Forensics Bro scripts & pcap samples☆63Mar 11, 2014Updated 12 years ago
- Log Examination Tool☆27Oct 11, 2016Updated 9 years ago
- A modular Python application to pull intelligence about malicious files☆123Dec 4, 2020Updated 5 years ago
- ☆815May 24, 2017Updated 8 years ago
- Python-based cloud node for local use☆11Mar 7, 2018Updated 8 years ago
- Extract information from MISP via the API☆16Jul 18, 2016Updated 9 years ago