evilsocket / sauron
A minimalistic cross-platform malware scanner with non-blocking realtime filesystem monitoring using YARA rules.
☆209Updated 2 years ago
Related projects ⓘ
Alternatives and complementary repositories for sauron
- A fast and secure multi protocol honeypot.☆311Updated 2 years ago
- NIST-based CVE lookup store and API powered by Rust.☆126Updated 3 weeks ago
- Login Pages Database forms a knowledge base on login pages related to malicious activities (C2 panels, phishing kits...).☆38Updated last year
- Analyse a forensic target (such as a directory) to find and report files found and not found from CIRCL hashlookup public service - https…☆125Updated last year
- Rip Raw is a small tool to analyse the memory of compromised Linux systems.☆131Updated 2 years ago
- Entropy scanner for Linux to detect packed or encrypted binaries related to malware. Finds malicious files and Linux processes and gives …☆144Updated 5 months ago
- PCAP visualization tool☆101Updated last year
- SubCrawl is a modular framework for discovering open directories, identifying unique content through signatures and organizing the data w…☆144Updated last year
- Canary Detection☆161Updated 7 months ago
- Data visualization for blue teams☆124Updated last year
- Command line fuzzer and bruteforcer 🌪 wfuzz for command☆86Updated 2 years ago
- Signature based honeypot detector tool written in Golang☆84Updated 6 months ago
- HASH (HTTP Agnostic Software Honeypot)☆128Updated 6 months ago
- Melody is a transparent internet sensor built for threat intelligence. Supports custom tagging rules and vulnerable application simulatio…☆138Updated 3 years ago
- A Feature Rich Modular Malware Configuration Extraction Utility for MalDuck☆124Updated 11 months ago
- WhiteBeam: Transparent endpoint security☆96Updated last year
- My very personal and opinionatedly organized infosec/cybersec sources in one OPML file☆56Updated last year
- Crawlector is a threat hunting framework designed for scanning websites for malicious objects.☆125Updated 11 months ago
- MalwareDB: bookkeeping for malware, goodware, and unknown files with relationship discovery☆32Updated this week
- Artifact collection tool for *nix systems☆192Updated 8 months ago
- HoneyCreds network credential injection to detect responder and other network poisoners.☆214Updated 3 years ago
- UniSBOM is a tool to build a software bill of materials on any platform with a unified data format.☆34Updated 2 years ago
- SNIcat☆125Updated 3 years ago
- A ransomware group monitoring bot written in C#.☆55Updated 2 years ago
- C2 Active Scanner☆48Updated 5 months ago
- ☆108Updated 4 months ago
- macOS forensic timeline generator using the analysis result DBs of mac_apt☆89Updated last year
- Pandora is an analysis framework to discover if a file is suspicious and conveniently show the results☆251Updated this week
- Bash Script to extract GNU/Linux forensic artifacts for digital forensic analysis and incident response.☆43Updated last year