evilsocket / sauronLinks
A minimalistic cross-platform malware scanner with non-blocking realtime filesystem monitoring using YARA rules.
☆228Updated 3 years ago
Alternatives and similar repositories for sauron
Users that are interested in sauron are comparing it to the libraries listed below
Sorting:
- Entropy scanner for Linux to detect packed or encrypted binaries related to malware. Finds malicious files and Linux processes and gives …☆167Updated last year
- A fast and secure multi protocol honeypot.☆326Updated 3 years ago
- WhiteBeam: Transparent endpoint security☆101Updated 2 years ago
- Malware vulnerability intel tool for third-party attackers☆122Updated last year
- Let's be scanned. A low-interaction honeypot focused on network scanners and bots. It integrates very well with IVRE to build a self-host…☆136Updated last week
- NIST-based CVE lookup store and API powered by Rust.☆136Updated 4 months ago
- Signature based honeypot detector tool written in Golang☆108Updated 10 months ago
- How to setup a honeypot with an IDS, ELK and TLS traffic inspection☆164Updated 3 years ago
- Signing-key abuse and update exploitation framework☆132Updated 8 months ago
- Repository and archive for Killing The Bear Gitbook☆83Updated 2 years ago
- A PoC ransomware sample to test out your ransomware response strategy.☆211Updated 2 months ago
- Rip Raw is a small tool to analyse the memory of compromised Linux systems.☆134Updated 4 years ago
- C2 Active Scanner☆59Updated last year
- Login Pages Database forms a knowledge base on login pages related to malicious activities (C2 panels, phishing kits...).☆39Updated 3 years ago
- Melody is a transparent internet sensor built for threat intelligence. Supports custom tagging rules and vulnerable application simulatio…☆140Updated 11 months ago
- BSidesRoc 2022 Linux Malware/Forensics Course☆75Updated 3 years ago
- This repository contains analysis scripts, YARA rules, and additional IoCs related to our Telekom Security blog posts.☆119Updated 2 years ago
- My very personal and opinionatedly organized infosec/cybersec sources in one OPML file☆59Updated 3 years ago
- Pandora is an analysis framework to discover if a file is suspicious and conveniently show the results☆277Updated last week
- A visualized overview of the Initial Access Broker (IAB) cybercrime landscape☆116Updated 4 years ago
- Columbo is a computer forensic analysis tool used to simplify and identify specific patterns in compromised datasets.☆61Updated 4 years ago
- MalwareDB: bookkeeping for malware, goodware, and unknown files with relationship discovery☆56Updated this week
- ☆66Updated 3 years ago
- DEbian Cve REproducer Tool☆27Updated 3 weeks ago
- Bash Script to extract GNU/Linux forensic artifacts for digital forensic analysis and incident response.☆43Updated 2 years ago
- SubCrawl is a modular framework for discovering open directories, identifying unique content through signatures and organizing the data w…☆150Updated 2 years ago
- IOCs published by Black Lotus Labs☆125Updated 3 months ago
- Data visualization for blue teams☆126Updated 3 years ago
- A forensic evidence acquirer☆86Updated 4 years ago
- This repo is a collection of Ransomware reports from vendors, researchers, etc.☆121Updated 3 years ago