amir9339 / volatility-dockerLinks
A suite of Volatility 3 plugins for memory forensics of Docker containers
☆19Updated last year
Alternatives and similar repositories for volatility-docker
Users that are interested in volatility-docker are comparing it to the libraries listed below
Sorting:
- Small web frontend for using openAI's GPT-3.5 and GPT-4's API☆57Updated 6 months ago
- Data visualization for blue teams☆126Updated 2 years ago
- CyberChef - Detection Engineering, TI, DFIR, Malware Analysis Edition☆65Updated 3 years ago
- A toolkit for the post-mortem examination of Docker containers from forensic HDD copies☆107Updated last year
- Lupo - Malware IOC Extractor. Debugging module for Malware Analysis Automation☆106Updated 3 years ago
- Rip Raw is a small tool to analyse the memory of compromised Linux systems.☆132Updated 3 years ago
- Linux Evidence Acquisition Framework☆118Updated last year
- Website for ail-typo-squatting library☆67Updated last month
- ☆44Updated 3 months ago
- ReWrite of AChoir in Go for Cross Platform☆42Updated this week
- yara detection rules for hunting with the threathunting-keywords project☆152Updated 5 months ago
- SubCrawl is a modular framework for discovering open directories, identifying unique content through signatures and organizing the data w…☆146Updated 2 years ago
- This repository contains analysis scripts, YARA rules, and additional IoCs related to our Telekom Security blog posts.☆118Updated last year
- Forensic Artifact Collection Tool Matrix☆91Updated last year
- Melody is a transparent internet sensor built for threat intelligence. Supports custom tagging rules and vulnerable application simulatio…☆141Updated 8 months ago
- A home for detection content developed by the delivr.to team☆72Updated 2 months ago
- Carbon Black Response IR tool☆55Updated 4 years ago
- ☆96Updated 6 months ago
- Sightings Ecosystem gives cyber defenders visibility into what adversaries actually do in the wild. With your help, we are tracking MITRE…☆37Updated 5 months ago
- MITRE Engage™ is a framework for conducting Denial, Deception, and Adversary Engagements.☆67Updated last year
- This repository is for Indicators of Compromise (IOCs) from Zscaler ThreatLabz public reports☆73Updated 3 months ago
- Factual-rules-generator is an open source project which aims to generate YARA rules about installed software from a machine.☆76Updated 3 years ago
- Harvest Linux forensic data for operational triage of an event.☆51Updated last year
- Cloud, CDN, and marketing services leveraged by cybercriminals and APT groups☆61Updated 3 years ago
- BlackBerry Threat Research & Intelligence☆99Updated 2 years ago
- Practical Information Sharing between Law Enforcement and CSIRT communities using MISP☆35Updated 2 years ago
- Shodan Monitoring integration for TheHive.☆131Updated 10 months ago
- Rules Shared by the Community from 100 Days of YARA 2023☆78Updated 2 years ago
- The core backend server handling API requests and task management☆49Updated 2 weeks ago
- ☆33Updated 3 weeks ago