adulau / hashlookup-server
Fast lookup server for NSRL and other hash database used in digital forensic
☆41Updated 2 years ago
Related projects ⓘ
Alternatives and complementary repositories for hashlookup-server
- Repository of tools, YARA rules, and code-snippets from Stairwell's research team.☆22Updated 9 months ago
- Python CLI and module for CIRCL hash lookup☆12Updated last month
- YAFRA is a semi-automated framework for analyzing and representing reports about IT Security incidents.☆27Updated 2 years ago
- Python based CLI for MalwareBazaar☆36Updated 3 weeks ago
- MISP sighting server is a fast sighting server to store and look-up sightings on attributes (network indicators, file hashes, system indi…☆15Updated 11 months ago
- ☆19Updated last year
- Can you pay the ransom in your country?☆14Updated 11 months ago
- A script that extracts embedded images from Office Open XML (OOXML) documents and generates image hash similarity graphs that cluster vis…☆20Updated 2 years ago
- Steezy - Ghetto Yara Generation☆15Updated last year
- Yara rules☆20Updated last year
- A Modular MWDB Utility to Collect Fresh Malware Samples☆34Updated 3 years ago
- NTFS file system specimens☆14Updated last year
- Core server components for Assemblyline 4 (Alerter, dispatcher, expiry, ingester, scaler, updater, ...)☆19Updated this week
- This repository regroups the Yara Rules for the Unprotect Project☆25Updated 4 years ago
- A tool to help malware analysts signature unique parts of RTF documents☆29Updated 9 months ago
- Just Another broken Registry Parser (JARP)☆16Updated 6 months ago
- Parser for Sdba memory pool tags☆17Updated 3 years ago
- Setting up a training environment for MISP☆11Updated last year
- Repository for scripts and tips for "Yara Scan Service"☆20Updated last year
- Windows file metadata / forensic tool.☆15Updated 2 months ago
- ☆24Updated 2 years ago
- ☆15Updated 3 years ago
- A Python package and command line utility for scanning emails with YARA rules☆20Updated last month
- Attempt to replicate the functions of auto_rip by Corey Harrell in Python.☆13Updated 3 months ago
- ☆31Updated 2 years ago
- Scripts to integrate DFIR-IRIS, MISP and TimeSketch☆31Updated 2 years ago
- A collection of my public YARA signatures for various malware families☆29Updated 2 months ago
- Repository with selected IOCs and YARA rules for threat hunting.☆32Updated 3 months ago
- ☆23Updated last year
- Emulates the VirusTotal "vt" YARA module for livehunt rule debugging/testing☆21Updated last year