decalage2 / oletoolsLinks
oletools - python tools to analyze MS OLE2 files (Structured Storage, Compound File Binary Format) and MS Office documents, for malware analysis, forensics and debugging.
☆3,250Updated 6 months ago
Alternatives and similar repositories for oletools
Users that are interested in oletools are comparing it to the libraries listed below
Sorting:
- Please no pull requests for this repository. Thanks!☆2,380Updated last week
- YARA signature and IOC database for my scanners and tools☆2,827Updated last week
- Loki - Simple IOC and YARA Scanner☆3,700Updated 2 months ago
- Repository of yara rules☆4,649Updated last year
- FLARE Obfuscated String Solver - Automatically extract obfuscated strings from malware.☆3,817Updated 2 weeks ago
- A curated list of awesome YARA rules, tools, and people.☆4,111Updated 9 months ago
- A VBA parser and emulation engine to analyze malicious macros.☆1,113Updated last year
- yarGen is a generator for YARA rules☆1,758Updated 2 months ago
- A list of cyber-chef recipes and curated links☆2,167Updated last year
- Investigate malicious Windows logon by visualizing and analyzing Windows event log☆3,028Updated 2 months ago
- FakeNet-NG - Next Generation Dynamic Network Analysis Tool☆2,044Updated 3 weeks ago
- Malware Configuration And Payload Extraction☆2,878Updated this week
- Rapidly Search and Hunt through Windows Forensic Artefacts☆3,410Updated 2 months ago
- Volatility 3.0 development☆3,779Updated last week
- Living Off The Land Binaries And Scripts - (LOLBins and LOLScripts)☆8,212Updated 3 weeks ago
- Mimikatz implementation in pure Python☆3,209Updated last month
- Digging Deeper....☆3,645Updated this week
- Indicators of Compromises (IOC) of our various investigations☆1,901Updated last week
- A toolset to make a system look as if it was the victim of an APT attack☆2,698Updated 3 months ago
- Interesting APT Report Collection And Some Special IOCs☆2,836Updated this week
- Wiki to collect Red Team infrastructure hardening resources☆4,408Updated 2 months ago
- Malwoverview is a first response tool used for threat hunting and offers intel information from Virus Total, Hybrid Analysis, URLHaus, Po…☆3,477Updated last month
- ☆2,366Updated 2 years ago
- Windows Events Attack Samples☆2,486Updated 2 years ago
- An advanced memory forensics framework☆7,924Updated 7 months ago
- Super timeline all the things☆1,982Updated this week
- Automated Adversary Emulation Platform☆6,629Updated last week
- A repository of sysmon configuration modules☆2,942Updated last year
- An open library of adversary emulation plans designed to empower organizations to test their defenses based on real-world TTPs.☆2,046Updated 7 months ago
- A collection of software installations scripts for Windows systems that allows you to easily setup and maintain a reverse engineering env…☆8,150Updated last week