diogo-fernan / domfind
A Python DNS crawler to find identical domain names under different TLDs.
☆24Updated 5 years ago
Related projects ⓘ
Alternatives and complementary repositories for domfind
- ☆29Updated 6 years ago
- Various Python scripts that have come in handy but aren't important enough to get their own repository☆22Updated 3 years ago
- An extendable tool to extract and aggregate IoCs from threat feeds☆32Updated 9 months ago
- Use DNS to hunt for threats including DGAs☆14Updated 8 years ago
- Easy way to create a MISP event related to a Phishing page☆17Updated last year
- ☆24Updated 2 years ago
- ☆14Updated 6 years ago
- PowerShell Memory Pulling script☆19Updated 9 years ago
- A Threat hunter's playbook to aid the development of techniques and hypothesis for hunting campaigns.☆14Updated 6 years ago
- Modular command-line threat hunting tool & framework.☆17Updated 4 years ago
- Create an incident response triage toolkit for use with Windows or Linux.☆17Updated 4 years ago
- Useful commands for infosec☆28Updated last year
- CTI-URLScan is a command line tool to enable analysts to search URLscan.io submissions. Pull screenshot and DOM content. As well as, auto…☆10Updated 3 years ago
- HoneyDB Python Module☆13Updated 9 months ago
- The Fastest way to consume Threat Intel☆25Updated 2 years ago
- Tool for automatic list generation of known TOR and VPN exit nodes☆29Updated 11 months ago
- Automatic Sender Policy Framework Reconnaissance☆18Updated 6 years ago
- YETI (Your Everyday Threat Intelligence) Integration to Elastic Stack☆15Updated 3 years ago
- Repository for scripts and tips for "Yara Scan Service"☆20Updated last year
- A simple many-rules to many-files YARA scanner for incident response or malware zoos.☆26Updated 6 years ago
- A script to create and assign SOP tasks into the cases☆18Updated 4 years ago
- A collection of Python utilities for use in scripts related to working with "indicators of compromise" (IOCs).☆17Updated 5 years ago
- ☆34Updated 6 years ago
- Security Operations Center Multiple Purpose Tool, takes IP address input, conducts OSINT, conducts splunk, bro, fireeye, imperva, and fir…☆21Updated 7 years ago
- Triage automation for suspect URLs☆12Updated 5 years ago
- BlueSploit is a DFIR framework with the main purpose being to quickly capture artifacts for later review.☆32Updated 4 years ago
- Creates an ATT&CK Navigator map of an Adversary Emulation Plan☆16Updated 3 years ago
- Build your own threat hunting maturity model☆12Updated 7 years ago