binalyze / dfir-labLinks
☆10Updated 6 months ago
Alternatives and similar repositories for dfir-lab
Users that are interested in dfir-lab are comparing it to the libraries listed below
Sorting:
- ☆21Updated 2 years ago
- enpoint detection / live analysis & sandbox host / signatures quality test☆44Updated 4 years ago
- Malware Checker Tool generates an HTML report by comparing Hashes, Ip Addresses and URL Addresses through the VirusTotal database.☆36Updated 3 years ago
- Sigma Engine implementation in TypeScript☆28Updated 2 years ago
- Jupyter Notebooks for Cyber Threat Intelligence☆35Updated last year
- This repository is for Indicators of Compromise (IOCs) from Zscaler ThreatLabz public reports☆73Updated 7 months ago
- Open Source Cyber Threat Intelligence Feed Collector☆17Updated 3 years ago
- Low budget VirusTotal Intelligence Cosplay☆20Updated 3 years ago
- An ebpf based agent for monitoring security relevant events on Linux systems.☆32Updated last year
- ATLAS - Malware Analysis Description☆21Updated 2 years ago
- This Repository gives the best and possible strategies against hunting the ransomware☆26Updated 2 years ago
- Linux Baseline and Forensic Triage Tool - BETA☆55Updated 2 years ago
- ☆12Updated 2 years ago
- Domain Connectivity Analysis Tools to analyze aggregate connectivity patterns across a set of domains during security investigations☆43Updated 3 years ago
- my MSTICpy practice and custom tools repository☆11Updated 2 months ago
- Scripts and tools accompanying HP Threat Research blog posts and reports.☆50Updated last year
- Threat Hunt Investigation Methodology and Procedure☆15Updated 3 years ago
- log-slapper is an open-source offensive security tool designed for red-team operations as the post-exploit module and assessing your Splu…☆24Updated 10 months ago
- Initial triage of Windows Event logs☆101Updated last year
- Detection rule validation☆41Updated last year
- Active Directory Penetration Testing Tool☆28Updated 3 years ago
- Actively hunt for attacker infrastructure by filtering Shodan results with URLScan data.☆61Updated last year
- Rules Shared by the Community from 100 Days of YARA 2023☆77Updated 2 years ago
- A home for detection content developed by the delivr.to team☆69Updated last month
- Simple PowerShell script to enable process scanning with Yara.☆95Updated 2 years ago
- Helping Incident Responders hunt for potential persistence mechanisms on UNIX-based systems.☆15Updated last year
- Scripts and lists to help generate YARA friendly string mutations☆21Updated 2 years ago
- Sigma detection rules for hunting with the threathunting-keywords project☆55Updated 4 months ago
- C2 Active Scanner☆59Updated last year
- A repository hosting example goodware evtx logs containing sample software installation and basic user interaction☆79Updated 2 months ago