elceef / ppdeep
Pure-Python library for computing fuzzy hashes (ssdeep)
☆35Updated 3 years ago
Related projects ⓘ
Alternatives and complementary repositories for ppdeep
- Fast lookup server for NSRL and other hash database used in digital forensic☆41Updated 2 years ago
- Repository of tools, YARA rules, and code-snippets from Stairwell's research team.☆22Updated 9 months ago
- 🚧 Currently transfering TLP:CLEAR rules from TLP:AMBER repository...☆22Updated 8 months ago
- Python CLI and module for CIRCL hash lookup☆12Updated last month
- Similarius is a Python library to compare web page and evaluate the level of similarity.☆16Updated last month
- MISP sighting server is a fast sighting server to store and look-up sightings on attributes (network indicators, file hashes, system indi…☆15Updated 11 months ago
- Python based CLI for MalwareBazaar☆36Updated 3 weeks ago
- Modular malware analysis artifact collection and correlation framework☆53Updated 7 months ago
- ☆15Updated 3 years ago
- A multi-threaded malware sample downloader based upon given MD-5/SHA-1/SHA-256 hashes, using multiple malware databases.☆29Updated last year
- Client library for the mwdb service by CERT Polska.☆40Updated last week
- Repository for scripts and tips for "Yara Scan Service"☆20Updated last year
- CSIRT Tooling: Best Practices in Developing, Maintaining and Distributing Open Source Tools☆16Updated 2 years ago
- Reads and prints information from the website MalAPI.io☆19Updated 2 years ago
- Imphash-like calculation on Golang binaries☆47Updated 2 years ago
- A script that extracts embedded images from Office Open XML (OOXML) documents and generates image hash similarity graphs that cluster vis…☆20Updated 2 years ago
- Automatically spider the result set of a Censys/Shodan search and download all files where the file name or folder path matches a regex.☆27Updated last year
- External telegram feeder for AIL framework☆13Updated last week
- A set of YARA rules for the AIL framework to detect leak or information disclosure☆37Updated 4 months ago
- Volatility3 plugins developed and maintained by the community☆45Updated last year
- Malware Muncher is a proof-of-concept Python script that utilizes the Frida framework for binary instrumentation and API hooking, enablin…☆42Updated last year
- Emulates the VirusTotal "vt" YARA module for livehunt rule debugging/testing☆21Updated last year
- A Python package and command line utility for scanning emails with YARA rules☆20Updated last month
- Emulator for Windows Malware Analysis☆14Updated 2 years ago
- "ImpELF: A Python-based ELF hashing utility that generates unique fingerprints for ELF binaries using their imported functions and librar…☆15Updated 10 months ago
- Configuration Extractors for Malware☆54Updated last month
- ☆24Updated this week
- Python wrappers for mal_unpack☆34Updated last year
- Yara rules☆20Updated last year
- USB HID driver emulation with PID/VID (0x3bca/0x27bb) of Plenom A/S Busylight Alpha, that is supported by Mimikatz. When mimikatz is exec…☆19Updated 2 years ago