baderj / domain_generation_algorithms
Some results of my DGA reversing efforts
☆661Updated 3 weeks ago
Alternatives and similar repositories for domain_generation_algorithms:
Users that are interested in domain_generation_algorithms are comparing it to the libraries listed below
- The repository that contains the algorithms for generating domain names, dictionaries of malicious domain names. Developed to research th…☆219Updated 7 years ago
- ☆269Updated 6 years ago
- Suspicious DGA from PDNS and Sandbox.☆184Updated 2 years ago
- Indicators from Unit 42 Public Reports☆710Updated 2 weeks ago
- Clusters and elements to attach to MISP events or attributes (like threat actors)☆558Updated this week
- Tool to extract indicators of compromise from security reports in PDF format☆434Updated 2 years ago
- Zeek Analysis Tools (ZAT): Processing and analysis of Zeek network data with Pandas, scikit-learn, Kafka and Spark☆434Updated last year
- A collection of known Domain Generation Algorithms☆66Updated 9 years ago
- APT Malware Dataset Containing over 3,500 State-Sponsored Malware Samples☆324Updated 2 years ago
- Suricata, Snort and Zeek IDS rule and pcap testing system☆474Updated 3 months ago
- FireEye Publicly Shared Indicators of Compromise (IOCs)☆464Updated 6 years ago
- PCAP Samples for Different Post Exploitation Techniques☆356Updated 3 years ago
- YARA Rules I come across on the internet☆337Updated last year
- Defanged Indicator of Compromise (IOC) Extractor.☆528Updated 7 months ago
- Extract and aggregate threat intelligence.☆859Updated last year
- Indicators of compromise (IOCs) collected from public resources and categorized by Qi-AnXin.☆929Updated last month
- yarGen is a generator for YARA rules☆1,629Updated 2 weeks ago
- Automatic Yara Rule Generation☆332Updated 9 years ago
- A collection of YARA rules we wish to share with the world, most probably referenced from http://blog.inquest.net.☆374Updated 2 years ago
- The Python SDK for AlienVault OTX☆370Updated 11 months ago
- IntelMQ is a solution for IT security teams for collecting and processing security feeds using a message queuing protocol.☆1,032Updated last week
- A Python RESTful API framework for online malware analysis and threat intelligence services.☆369Updated 11 months ago
- A set of Zeek scripts to detect ATT&CK techniques.☆585Updated 9 months ago
- Malware Configuration And Payload Extraction☆754Updated 5 months ago
- Utilities for MITRE™ ATT&CK☆1,025Updated 11 months ago
- PEframe is a open source tool to perform static analysis on Portable Executable malware and malicious MS Office documents.☆613Updated 2 years ago
- Yara Rule Analyzer and Statistics☆373Updated 2 years ago
- Repository of YARA rules made by Trellix ATR Team☆593Updated last month
- Python library using the MISP Rest API☆460Updated 3 weeks ago
- ReversingLabs YARA Rules☆814Updated 2 weeks ago