adava / CnCHunterLinks
This project fully automates the process of analyzing and exploiting IoT malware to find live CnC servers.
☆42Updated last year
Alternatives and similar repositories for CnCHunter
Users that are interested in CnCHunter are comparing it to the libraries listed below
Sorting:
- My scripts to deobfuscate APT32 malware☆27Updated 3 years ago
- ssdeep cluster analysis for malware files☆31Updated 5 years ago
- Code for BH21 talk: "Generating YARA Rules by Classifying Malicious Byte Sequences"☆17Updated 9 months ago
- ☆26Updated 2 years ago
- Mem2Img: Memory-Resident Malware Detection via Convolution Neural Network☆25Updated 4 years ago
- A small utility to deal with malware embedded hashes.☆52Updated 2 years ago
- PackGenome: Automatically Generating Robust YARA Rules for Accurate Malware Packer Detection☆27Updated last year
- This repository contains dynamic and static tools for IoT malware analysis☆21Updated 3 years ago
- Paracosme is a zero-click remote memory corruption exploit that compromises ICONICS Genesis64 which was demonstrated successfully on stag…☆89Updated 2 years ago
- Cisco ASA Software and ASDM Security Research☆86Updated 3 years ago
- Powershell script deobfuscation using AST in Python☆72Updated last month
- A Semantics-Enhanced Learnable Vulnerability Detector☆42Updated 3 years ago
- Maco - Malware config extractor framework☆41Updated last month
- Repository of Yara rules created by the Stratosphere team☆28Updated 4 years ago
- Yapscan is a YAra based Process SCANner, aimed at giving more control about what to scan and giving detailed reports on matches.☆62Updated 2 years ago
- Framework for Adversarial Malware Evaluation.☆35Updated 7 months ago
- Use YARA rules on Time Travel Debugging traces☆96Updated 2 years ago
- The project will serve as a central repository for VMware Threat Analysis Unit (TAU) to share threat intelligence with the security commu…☆17Updated 2 years ago
- My conference presentations and Materials for them.☆32Updated 3 years ago
- SEMA is based on angr, a symbolic execution engine used to extract API calls. Especially, we extend ANGR with strategies to create repr…☆119Updated 8 months ago
- ☆43Updated 5 months ago
- Collection of slides☆33Updated 2 months ago
- ☆17Updated 6 years ago
- ELF Sectional docking payload injector system☆21Updated 3 years ago
- IDA Pro plugin for recognizing known hashes of API function names☆82Updated 3 years ago
- IDA SIG files for multiarch uClibc library☆38Updated 7 years ago
- ☆16Updated last year
- Code for the paper "EMBERSim: A Large-Scale Databank for Boosting Similarity Search in Malware Analysis"☆32Updated 2 years ago
- ☆12Updated 4 years ago
- bdvl☆114Updated 3 years ago