decalage2 / oletoolsLinks
oletools - python tools to analyze MS OLE2 files (Structured Storage, Compound File Binary Format) and MS Office documents, for malware analysis, forensics and debugging.
☆3,210Updated 4 months ago
Alternatives and similar repositories for oletools
Users that are interested in oletools are comparing it to the libraries listed below
Sorting:
- Please no pull requests for this repository. Thanks!☆2,336Updated last week
- FakeNet-NG - Next Generation Dynamic Network Analysis Tool☆2,015Updated last month
- A VBA parser and emulation engine to analyze malicious macros.☆1,110Updated last year
- Investigate malicious Windows logon by visualizing and analyzing Windows event log☆3,002Updated last week
- YARA signature and IOC database for my scanners and tools☆2,770Updated this week
- FLARE Obfuscated String Solver - Automatically extract obfuscated strings from malware.☆3,748Updated last week
- Loki - Simple IOC and YARA Scanner☆3,664Updated last month
- Repository of yara rules☆4,560Updated last year
- yarGen is a generator for YARA rules☆1,728Updated 2 weeks ago
- Volatility 3.0 development☆3,604Updated last week
- A curated list of awesome YARA rules, tools, and people.☆4,044Updated 7 months ago
- Mimikatz implementation in pure Python☆3,158Updated last month
- A toolset to make a system look as if it was the victim of an APT attack☆2,668Updated last month
- Utilities for Sysmon☆1,551Updated last month
- Rapidly Search and Hunt through Windows Forensic Artefacts☆3,336Updated 2 weeks ago
- A list of cyber-chef recipes and curated links☆2,145Updated last year
- Wiki to collect Red Team infrastructure hardening resources☆4,369Updated 3 weeks ago
- A collection of software installations scripts for Windows systems that allows you to easily setup and maintain a reverse engineering env…☆7,917Updated last month
- Noriben - Portable, Simple, Malware Analysis Sandbox☆1,196Updated 2 months ago
- ☆2,346Updated 2 years ago
- Responder is a LLMNR, NBT-NS and MDNS poisoner, with built-in HTTP/SMB/MSSQL/FTP/LDAP rogue authentication server supporting NTLMv1/NTLMv…☆4,778Updated 5 years ago
- Malware Configuration And Payload Extraction☆2,760Updated this week
- Windows Events Attack Samples☆2,437Updated 2 years ago
- Malwoverview is a first response tool used for threat hunting and offers intel information from Virus Total, Hybrid Analysis, URLHaus, Po…☆3,445Updated 3 months ago
- Interesting APT Report Collection And Some Special IOCs☆2,688Updated this week
- A cross-platform assistant for creating malicious MS Office documents. Can hide VBA macros, stomp VBA code (via P-Code) and confuse macro…☆2,211Updated last year
- This tool compares a targets patch levels against the Microsoft vulnerability database in order to detect potential missing patches on th…☆4,134Updated 2 years ago
- Living Off The Land Binaries And Scripts - (LOLBins and LOLScripts)☆8,058Updated 3 weeks ago
- A repository of sysmon configuration modules☆2,888Updated last year
- PowerShell Obfuscator☆4,106Updated 2 years ago