adobe / libLOLLinks
☆49Updated this week
Alternatives and similar repositories for libLOL
Users that are interested in libLOL are comparing it to the libraries listed below
Sorting:
- Rip Raw is a small tool to analyse the memory of compromised Linux systems.☆131Updated 3 years ago
- CyberChef - Detection Engineering, TI, DFIR, Malware Analysis Edition☆64Updated 2 years ago
- Accelerating the collection, processing, analysis and outputting of digital forensic artefacts.☆31Updated 6 months ago
- This repository aims to collect and document indicators from the different C2's listed in the C2-Matrix☆73Updated 3 years ago
- Factual-rules-generator is an open source project which aims to generate YARA rules about installed software from a machine.☆76Updated 3 years ago
- A home for detection content developed by the delivr.to team☆69Updated last week
- This repository contains the code and PCAPS used for the SANS webinar, "Hacking Proprietary Protocols" given on February 23, 2021.☆34Updated 3 years ago
- Robo-Red-Team: Training platform for blue team cybersecurity professionals☆51Updated 4 years ago
- ☆42Updated 3 weeks ago
- A simple command line program to help defender test their detections for network beacon patterns and domain fronting☆69Updated 3 years ago
- Source code and examples for Antignis☆43Updated 2 years ago
- A zero dependency and customizable Python library for scanning Windows and Linux process memory.☆66Updated last year
- Decloak Linux stealth rootkits hiding data with this simple memory mapped IO investigation tool.☆25Updated 2 years ago
- A canary designed to minimize the impact from certain Ransomware actors☆98Updated 4 years ago
- A tool to modify timestamps in a packet capture to a user selected date☆31Updated 3 years ago
- Visual Studio Code extension for MITRE ATT&CK☆54Updated last year
- A python script to acquire multiple aws ec2 instances in a forensically sound-ish way☆38Updated 3 years ago
- Tools related to work with Attack Flow (https://github.com/center-for-threat-informed-defense/attack-flow)☆44Updated 3 years ago
- SNIcat☆127Updated 3 years ago
- HTTP Headers Hashing (HHHash) is a technique used to create a fingerprint of an HTTP server based on the headers it returns.☆77Updated last year
- ☆69Updated 3 years ago
- A toolkit for the post-mortem examination of Docker containers from forensic HDD copies☆104Updated last year
- Repository that contains a set of purposefully erroneous Yara rules.☆58Updated last week
- Offensive Research Guide to Help Defense Improve Detection☆31Updated 2 years ago
- ☆29Updated 6 months ago
- Lightweight Python-Based Malware Analysis Pipeline☆34Updated last month
- TAPIR is a multi-user, client/server, incident response framework☆44Updated 3 years ago
- Automatic detection engineering technical state compliance☆55Updated last year
- An experimental Velociraptor implementation using cloud infrastructure☆25Updated last month
- Columbo is a computer forensic analysis tool used to simplify and identify specific patterns in compromised datasets.☆61Updated 3 years ago