erichutchins / geoipsedLinks
Fast, inline geolocation decoration of IPv4 and IPv6 addresses written in Rust
☆27Updated last year
Alternatives and similar repositories for geoipsed
Users that are interested in geoipsed are comparing it to the libraries listed below
Sorting:
- A tool for studying JavaScript malware.☆15Updated this week
- NTFS file system specimens☆13Updated 2 years ago
- Scripts and tools created for appx analysis talk (Magnet summit 2019)☆18Updated last year
- ☆21Updated 6 months ago
- Registry to JSON. This Project is for learning purposes and is not maintained.☆12Updated 3 years ago
- MasterParser is a simple, all-in-one, digital forensics artifact parser☆23Updated 4 years ago
- Windows Thingies... but in Rust☆23Updated 2 years ago
- A triage data collection script for macOS☆28Updated 4 years ago
- MacOS incident Response Toolkit. Mostly written while stuck on a NJTransit train.☆20Updated 5 years ago
- ☆23Updated 2 years ago
- macOS Artifact Intelligence Tool☆13Updated 6 years ago
- A DFVFS Backed Forensic Viewer☆40Updated 5 years ago
- Python 3 library to build YARA rules.☆13Updated 3 years ago
- Yara rules☆21Updated 2 years ago
- A document tagging library☆30Updated 6 months ago
- Serverless, real-time, ClamAV+Yara scanning for your S3 Buckets☆32Updated 3 months ago
- Indicators of compromise, YARA rules, and Python scripts to supplement the SANS CTI Summit 2021 talk: "xStart when you're ready".☆14Updated 4 years ago
- A tool to help malware analysts signature unique parts of RTF documents☆29Updated 9 months ago
- Automating forensic data extraction, reduction, and overall triage of cold disk and memory images.☆21Updated 6 years ago
- Documentation and parsers for different anti-virus quarantine formats.☆42Updated 4 years ago
- Repository with selected IOCs and YARA rules for threat hunting.☆35Updated 4 months ago
- Conceptual Methods for Finding Commonalities in Macho Files☆12Updated last year
- A python script to acquire multiple aws ec2 instances in a forensically sound-ish way☆38Updated 3 years ago
- A minimal malware analysis sandbox for macOS☆31Updated 2 years ago
- The Purpose of this research tool is to provide a Python client into RiskIQ API services.☆22Updated 4 years ago
- DocBleachShell is the integration of the great DocBleach, https://github.com/docbleach/DocBleach Content Disarm and Reconstruction tool i…☆21Updated 3 years ago
- Carving tool based in Radare2 & Yara☆16Updated 6 years ago
- Data related to the SANS Internet Storm Center☆13Updated 3 weeks ago
- ARDvark parses the Apple Remote Desktop (ARD) files to pull out application usage, user activity, and filesystem listings.☆35Updated 2 years ago
- SightingDB is a database for Sightings☆22Updated 2 years ago