dfir-dd / dionysosLinks
Scanner for certain IoCs
☆11Updated 11 months ago
Alternatives and similar repositories for dionysos
Users that are interested in dionysos are comparing it to the libraries listed below
Sorting:
- Manage Your Large Team of Consultants☆11Updated 3 months ago
- NTFS Security Descriptor Stream ($Secure:$SDS) parser☆14Updated 2 years ago
- Yara rules for malicious javascript files from public repositories or written by me.☆13Updated 4 years ago
- ☆23Updated 9 months ago
- Modular malware analysis artifact collection and correlation framework☆53Updated last year
- lnk_parser is a full rust implementation to parse windows LNK files☆22Updated 5 months ago
- A small util to brute-force prefetch hashes☆77Updated 3 years ago
- ☆21Updated 3 years ago
- ShellSweeping the evil.☆53Updated last year
- Windows file metadata / forensic tool.☆18Updated 2 months ago
- Wrapper for TSK (Sleuth Kit) Bindings☆12Updated 2 years ago
- Provides a multi-platform Graphical User Interface for hashlookup☆12Updated last year
- 100 Days of YARA to be updated with rules & ideas as the year progresses☆60Updated 2 years ago
- Repository of tools, YARA rules, and code-snippets from Stairwell's research team.☆23Updated last year
- NTFS file system specimens☆13Updated 2 years ago
- Hundred Days of Yara Challenge☆12Updated 3 years ago
- Alternative YARA scanning engine☆73Updated 3 years ago
- Links to malware-related YARA rules☆15Updated 3 years ago
- Library of threat hunts to get any user started!☆45Updated 5 years ago
- ☆35Updated 4 years ago
- Python library to query various sources of threat intelligence for data on domains, file hashes, and IP addresses.☆31Updated 2 years ago
- A quick reference guide for python script development in DFIR☆17Updated last year
- YARA rule analyzer to improve rule quality and performance☆107Updated 8 months ago
- A pure PowerShell/ .NET DFIR capability that dumps the Windows SRUM (System Resource Usage Monitor) database to CSVs for analysis.☆14Updated 4 years ago
- YaraScanner is a file pattern-matching tool based on YARA rules.☆60Updated 2 years ago
- ☆36Updated 2 years ago
- ☆23Updated last year
- Parsers for common structures across windows formats.☆12Updated 2 years ago
- Python based CLI for MalwareBazaar☆39Updated 5 months ago
- Linux Evidence Acquisition Framework☆117Updated last year