evilsocket / sauron
A minimalistic cross-platform malware scanner with non-blocking realtime filesystem monitoring using YARA rules.
☆217Updated 2 years ago
Alternatives and similar repositories for sauron:
Users that are interested in sauron are comparing it to the libraries listed below
- A fast and secure multi protocol honeypot.☆313Updated 2 years ago
- Signature based honeypot detector tool written in Golang☆89Updated 2 months ago
- Yara Based Detection Engine for web browsers☆47Updated 3 years ago
- Canary Detection☆164Updated 10 months ago
- UniSBOM is a tool to build a software bill of materials on any platform with a unified data format.☆34Updated 2 years ago
- macOS forensic timeline generator using the analysis result DBs of mac_apt☆91Updated last year
- Login Pages Database forms a knowledge base on login pages related to malicious activities (C2 panels, phishing kits...).☆38Updated 2 years ago
- LOKI2 - Simple IOC and YARA Scanner☆85Updated 6 months ago
- Analyse a forensic target (such as a directory) to find and report files found and not found from CIRCL hashlookup public service - https…☆127Updated last year
- A tool designed to hunt for Phishing Kit source code☆217Updated last year
- Malware vulnerability intel tool for third-party attackers☆114Updated 3 months ago
- Command line fuzzer and bruteforcer 🌪 wfuzz for command☆85Updated 2 years ago
- HASH (HTTP Agnostic Software Honeypot)☆136Updated 9 months ago
- Data visualization for blue teams☆125Updated 2 years ago
- My very personal and opinionatedly organized infosec/cybersec sources in one OPML file☆56Updated 2 years ago
- A PoC ransomware sample to test out your ransomware response strategy.☆206Updated 2 months ago
- A python script developed to process Windows memory images based on triage type.☆260Updated last year
- Bash Script to extract GNU/Linux forensic artifacts for digital forensic analysis and incident response.☆43Updated last year
- WhiteBeam: Transparent endpoint security☆99Updated last year
- TAPIR is a multi-user, client/server, incident response framework☆44Updated 2 years ago
- Lupo - Malware IOC Extractor. Debugging module for Malware Analysis Automation☆104Updated 2 years ago
- YARI is an interactive debugger for YARA Language.☆88Updated last month
- Threat Intel Platform for T-POTs☆141Updated this week
- A zero dependency and customizable Python library for scanning Windows and Linux process memory.☆65Updated last year
- Leaked communication of Conti ransomware group from Jan 29, 2021 to Feb 27, 2022☆130Updated 2 years ago
- Algorithme d'apprentissage statistique permettant de créer un modèle sur les lignes de commandes des évènements "Création de Processus", …☆81Updated last year
- ☆110Updated last month
- A Feature Rich Modular Malware Configuration Extraction Utility for MalDuck☆127Updated last year
- DEbian Cve REproducer Tool☆22Updated last year
- This repository contains procedures found in the Feb 2022 conti leaks. They were taken from the "manual_teams_c" rocketchat channel in th…☆87Updated 2 years ago