br-data / 2019-winnti-analyse
Scripts and rulesets for analysing the Winnti malware
☆24Updated 5 years ago
Alternatives and similar repositories for 2019-winnti-analyse:
Users that are interested in 2019-winnti-analyse are comparing it to the libraries listed below
- Malware similarity platform with modularity in mind.☆78Updated 3 years ago
- Steezy - Ghetto Yara Generation☆15Updated 2 years ago
- Simple yara rule manager☆66Updated 2 years ago
- ☆14Updated 6 years ago
- Core server components for Assemblyline 4 (Alerter, dispatcher, expiry, ingester, scaler, updater, ...)☆20Updated this week
- CyCAT.org API back-end server including crawlers☆29Updated 2 years ago
- threat-intelligence.eu website and repository of information about open standards, documents, methodologies and processes in threat intel…☆48Updated 2 years ago
- pollen - A command-line tool for interacting with TheHive☆35Updated 5 years ago
- A YARA Rule Performance Measurement Tool☆59Updated last year
- Repository with selected IOCs and YARA rules for threat hunting.☆35Updated 3 months ago
- YETI (Your Everyday Threat Intelligence) Integration to Elastic Stack☆16Updated 4 years ago
- Threat intelligence and threat detection indicators (IOC, IOA)☆52Updated 4 years ago
- XOR Key Extractor☆50Updated 8 months ago
- A collection of Indicators of Compromise (IoCs), most aligning with samples derived from the signatures in the YARA-Signatures repo☆29Updated 4 years ago
- ☆13Updated last month
- Configurations for DFIR ORC☆27Updated last year
- Community modules for FAME☆65Updated 2 months ago
- Python emulator for Excel XLM macros.☆18Updated 4 years ago
- CIRCL system forensic tools or a jumble of tools to support forensic☆42Updated 2 years ago
- Pythonic way to work with the warning lists defined there: https://github.com/MISP/misp-warninglists☆32Updated 2 months ago
- Extract BITS jobs from QMGR queue and store them as CSV records☆75Updated 2 months ago
- References for FIRST CTI 2019 Symposium presentation☆22Updated 6 years ago
- The Intelligent Process Lifecycle of Active Cyber Defenders☆31Updated 2 years ago
- A collection of typical false positive indicators☆55Updated 4 years ago
- ☆22Updated this week
- Dashboards for conducting forensic investigation using windows events in Kibana☆17Updated 6 years ago
- This repository hosts files relating to the TF-CSIRT Reference Security Incident Taxonomy Working Group.☆65Updated 2 weeks ago
- Standardized Malware Analysis Tool☆52Updated 4 years ago
- A rewrite of mactime, a bodyfile reader☆36Updated 8 months ago
- macOS Artifact Intelligence Tool☆13Updated 5 years ago