br-data / 2019-winnti-analyseLinks
Scripts and rulesets for analysing the Winnti malware
☆24Updated 6 years ago
Alternatives and similar repositories for 2019-winnti-analyse
Users that are interested in 2019-winnti-analyse are comparing it to the libraries listed below
Sorting:
- Threat intelligence and threat detection indicators (IOC, IOA)☆52Updated 5 years ago
- Core server components for Assemblyline 4 (Alerter, dispatcher, expiry, ingester, scaler, updater, ...)☆21Updated this week
- References for FIRST CTI 2019 Symposium presentation☆23Updated 6 years ago
- Simple yara rule manager☆66Updated 2 years ago
- Steezy - Ghetto Yara Generation☆15Updated 2 years ago
- A collection of typical false positive indicators☆55Updated 5 years ago
- Malware similarity platform with modularity in mind.☆79Updated 4 years ago
- threat-intelligence.eu website and repository of information about open standards, documents, methodologies and processes in threat intel…☆49Updated last month
- Yara-Endpoint is a tool useful for incident response as well as anti-malware enpoint base on Yara signatures.☆109Updated 7 years ago
- CyCAT.org API back-end server including crawlers☆29Updated 2 years ago
- Repository with selected IOCs and YARA rules for threat hunting.☆35Updated 6 months ago
- carcass is a Python package to generate python package scaffolding based on best practices☆17Updated 3 years ago
- Sandbox feature upgrade with the help of wrapped samples☆76Updated 7 years ago
- Data related to the SANS Internet Storm Center☆13Updated 3 months ago
- An ELK environment containing interesting security datasets.☆138Updated 5 years ago
- Community modules for FAME☆65Updated 3 months ago
- Proofpoint - Emerging Threats - Threat Research tools + publicly shared intel and documentation☆80Updated 3 months ago
- XOR Key Extractor☆51Updated last year
- A YARA Rule Performance Measurement Tool☆61Updated last year
- YETI (Your Everyday Threat Intelligence) Integration to Elastic Stack☆16Updated 4 years ago
- pollen - A command-line tool for interacting with TheHive☆36Updated 6 years ago
- A rewrite of mactime, a bodyfile reader☆39Updated last year
- Random hunting ordiented yara rules☆98Updated 2 years ago
- CIRCL system forensic tools or a jumble of tools to support forensic☆41Updated 2 years ago
- Set of Yara rules for finding files using magics headers☆140Updated 5 years ago
- Dashboards for conducting forensic investigation using windows events in Kibana☆18Updated 6 years ago
- Paper and Links to Crimeware in the Modern Era☆31Updated 6 years ago
- Extract BITS jobs from QMGR queue and store them as CSV records☆75Updated 10 months ago
- Tool for automatic list generation of known TOR and VPN exit nodes☆29Updated last year
- CLI tool to analyze PE files☆90Updated last year