cuckoosandbox / cuckoo
Cuckoo Sandbox is an automated dynamic malware analysis system
☆5,611Updated 2 years ago
Alternatives and similar repositories for cuckoo:
Users that are interested in cuckoo are comparing it to the libraries listed below
- Repository of yara rules☆4,287Updated 10 months ago
- The pattern matching swiss knife☆8,542Updated last week
- Zeek is a powerful network analysis framework that is much different from the typical IDS you may know.☆6,663Updated this week
- GRR Rapid Response: remote live forensics for incident response☆4,842Updated this week
- The Sleuth Kit® (TSK) is a library and collection of command line digital forensics tools that allow you to investigate volume and file s…☆2,719Updated this week
- FLARE Obfuscated String Solver - Automatically extract obfuscated strings from malware.☆3,412Updated this week
- FakeNet-NG - Next Generation Dynamic Network Analysis Tool☆1,854Updated last month
- Loki - Simple IOC and YARA Scanner☆3,467Updated 2 months ago
- An advanced memory forensics framework☆7,528Updated last year
- OSSEC is an Open Source Host-based Intrusion Detection System that performs log analysis, file integrity checking, policy monitoring, roo…☆4,619Updated last month
- Patch PE, ELF, Mach-O binaries with shellcode new version in development, available only to sponsors☆3,341Updated last year
- Binary analysis and management framework☆1,544Updated last year
- A curated list of awesome YARA rules, tools, and people.☆3,684Updated last week
- MISP (core software) - Open Source Threat Intelligence and Sharing Platform☆5,528Updated this week
- DEPRECATED - MozDef: Mozilla Enterprise Defense Platform☆2,166Updated 3 years ago
- ☆3,515Updated 11 months ago
- Rekall Memory Forensic Framework☆1,940Updated 4 years ago
- Arkime is an open source, large scale, full packet capturing, indexing, and database system.☆6,520Updated this week
- YARA signature and IOC database for my scanners and tools☆2,554Updated last week
- A network sniffer that logs all DNS server replies for use in a passive DNS setup☆1,686Updated 8 months ago
- Automated Adversary Emulation Platform☆5,860Updated this week
- Responder is a LLMNR, NBT-NS and MDNS poisoner, with built-in HTTP/SMB/MSSQL/FTP/LDAP rogue authentication server supporting NTLMv1/NTLMv…☆4,600Updated 4 years ago
- A collection of software installations scripts for Windows systems that allows you to easily setup and maintain a reverse engineering env…☆6,922Updated this week
- Modern Honey Network☆2,445Updated 2 months ago
- Empire is a PowerShell and Python post-exploitation agent.☆7,546Updated 5 years ago
- Various public documents, whitepapers and articles about APT campaigns☆3,537Updated last year
- Malware Configuration And Payload Extraction☆2,193Updated this week
- Network recon framework. Build your own, self-hosted and fully-controlled alternatives to Shodan / ZoomEye / Censys and GreyNoise, run yo…☆3,627Updated last week
- Security Onion 16.04 - Linux distro for threat hunting, enterprise security monitoring, and log management☆3,083Updated 3 years ago
- yarGen is a generator for YARA rules☆1,602Updated 8 months ago