decalage2 / oletoolsLinks
oletools - python tools to analyze MS OLE2 files (Structured Storage, Compound File Binary Format) and MS Office documents, for malware analysis, forensics and debugging.
☆3,163Updated 3 months ago
Alternatives and similar repositories for oletools
Users that are interested in oletools are comparing it to the libraries listed below
Sorting:
- Please no pull requests for this repository. Thanks!☆2,298Updated 2 weeks ago
- FakeNet-NG - Next Generation Dynamic Network Analysis Tool☆1,996Updated last week
- Volatility 3.0 development☆3,462Updated last week
- YARA signature and IOC database for my scanners and tools☆2,734Updated this week
- yarGen is a generator for YARA rules☆1,704Updated 5 months ago
- Repository of yara rules☆4,515Updated last year
- FLARE Obfuscated String Solver - Automatically extract obfuscated strings from malware.☆3,676Updated last week
- A VBA parser and emulation engine to analyze malicious macros.☆1,106Updated last year
- Loki - Simple IOC and YARA Scanner☆3,640Updated last week
- Mimikatz implementation in pure Python☆3,116Updated 3 months ago
- A curated list of awesome YARA rules, tools, and people.☆3,967Updated 5 months ago
- Investigate malicious Windows logon by visualizing and analyzing Windows event log☆2,997Updated 2 weeks ago
- Malware Configuration And Payload Extraction☆2,659Updated this week
- An advanced memory forensics framework☆7,807Updated 3 months ago
- A collaborative, multi-platform, red teaming framework☆3,969Updated this week
- Noriben - Portable, Simple, Malware Analysis Sandbox☆1,193Updated last month
- macro_pack is a tool by @EmericNasi used to automatize obfuscation and generation of Office documents, VB scripts, shortcuts, and other f…☆2,277Updated last year
- Malwoverview is a first response tool used for threat hunting and offers intel information from Virus Total, Hybrid Analysis, URLHaus, Po…☆3,404Updated last month
- A collection of software installations scripts for Windows systems that allows you to easily setup and maintain a reverse engineering env…☆7,708Updated last week
- Wiki to collect Red Team infrastructure hardening resources☆4,348Updated last year
- Living Off The Land Binaries And Scripts - (LOLBins and LOLScripts)☆7,926Updated 2 weeks ago
- Unicorn is a simple tool for using a PowerShell downgrade attack and inject shellcode straight into memory. Based on Matthew Graeber's po…☆3,866Updated last year
- A cross-platform assistant for creating malicious MS Office documents. Can hide VBA macros, stomp VBA code (via P-Code) and confuse macro…☆2,207Updated last year
- A toolset to make a system look as if it was the victim of an APT attack☆2,650Updated 2 years ago
- Indicators of Compromises (IOC) of our various investigations☆1,830Updated this week
- A list of cyber-chef recipes and curated links☆2,130Updated last year
- Covenant is a collaborative .NET C2 framework for red teamers.☆4,505Updated last year
- Responder is a LLMNR, NBT-NS and MDNS poisoner, with built-in HTTP/SMB/MSSQL/FTP/LDAP rogue authentication server supporting NTLMv1/NTLMv…☆4,751Updated 5 years ago
- Interesting APT Report Collection And Some Special IOCs☆2,672Updated last week
- Corelan Repository for mona.py☆1,782Updated 2 months ago