cugu / ac
☆16Updated this week
Related projects: ⓘ
- Mass Triage Tools☆19Updated 2 months ago
- ☆24Updated last year
- Some rules, scripts of some use to us☆9Updated this week
- Exporting MISP event attributes to yara rules usable with Thor apt scanner☆22Updated 7 years ago
- Scripts and tools created for appx analysis talk (Magnet summit 2019)☆13Updated 6 months ago
- Konrads' Pen-Ultimate (Windows) Log File Parser☆13Updated 2 years ago
- Steezy - Ghetto Yara Generation☆15Updated last year
- Crack your macros like the math pros.☆33Updated 7 years ago
- ☆14Updated 6 years ago
- YETI (Your Everyday Threat Intelligence) Integration to Elastic Stack☆15Updated 3 years ago
- CIRCL system forensic tools or a jumble of tools to support forensic☆42Updated last year
- Set of utilities for getting information about Windows Events☆15Updated 6 years ago
- Python 3 library to build YARA rules.☆12Updated 2 years ago
- Carve $MFT records from a chunk of data (for instance a memory dump)☆16Updated 8 years ago
- A Windows Event Processing Utility☆46Updated 6 years ago
- ☆16Updated this week
- macOS Artifact Intelligence Tool☆13Updated 5 years ago
- Force-Directed Graph Generator for Volatility Ouputs☆26Updated 5 years ago
- ☆12Updated this week
- DocBleachShell is the integration of the great DocBleach, https://github.com/docbleach/DocBleach Content Disarm and Reconstruction tool i…☆21Updated 2 years ago
- Registry Miner☆14Updated 6 years ago
- Various DFIR Tools☆26Updated 6 years ago
- Indicators of compromise relating to our report on APT10's targeting of global MSPs☆10Updated 6 years ago
- hopefully a source-to-source deobfuscator, aiming at deobfuscating common scripts languages such as Powershell, VBA and Javascript. Curre…☆40Updated 5 years ago
- Performs OCR on image files and scans them for matches to YARA rules☆39Updated 5 years ago
- Plugins for the Viper Framework☆14Updated 4 years ago
- Automating forensic data extraction, reduction, and overall triage of cold disk and memory images.☆21Updated 5 years ago
- Generate bulk YARA rules from YAML input☆21Updated 4 years ago
- Splunk integration with MISP☆12Updated 6 years ago
- ☆12Updated this week