evilsocket / sauronLinks
A minimalistic cross-platform malware scanner with non-blocking realtime filesystem monitoring using YARA rules.
☆227Updated 3 years ago
Alternatives and similar repositories for sauron
Users that are interested in sauron are comparing it to the libraries listed below
Sorting:
- WhiteBeam: Transparent endpoint security☆101Updated 2 years ago
- Entropy scanner for Linux to detect packed or encrypted binaries related to malware. Finds malicious files and Linux processes and gives …☆167Updated last year
- A fast and secure multi protocol honeypot.☆324Updated 3 years ago
- Signature based honeypot detector tool written in Golang☆107Updated 8 months ago
- My very personal and opinionatedly organized infosec/cybersec sources in one OPML file☆58Updated 2 years ago
- MalwareDB: bookkeeping for malware, goodware, and unknown files with relationship discovery☆52Updated this week
- Signing-key abuse and update exploitation framework☆131Updated 6 months ago
- NIST-based CVE lookup store and API powered by Rust.☆136Updated 2 months ago
- Let's be scanned. A low-interaction honeypot focused on network scanners and bots. It integrates very well with IVRE to build a self-host…☆132Updated last week
- Pandora is an analysis framework to discover if a file is suspicious and conveniently show the results☆275Updated 2 weeks ago
- Login Pages Database forms a knowledge base on login pages related to malicious activities (C2 panels, phishing kits...).☆39Updated 2 years ago
- This repository contains analysis scripts, YARA rules, and additional IoCs related to our Telekom Security blog posts.☆119Updated last year
- SubCrawl is a modular framework for discovering open directories, identifying unique content through signatures and organizing the data w…☆54Updated last year
- BSidesRoc 2022 Linux Malware/Forensics Course☆76Updated 3 years ago
- How to setup a honeypot with an IDS, ELK and TLS traffic inspection☆164Updated 3 years ago
- Malware vulnerability intel tool for third-party attackers☆122Updated last year
- Analyse a forensic target (such as a directory) to find and report files found and not found from CIRCL hashlookup public service - https…☆127Updated 2 years ago
- C2 Active Scanner☆60Updated last year
- PCAP visualization tool☆104Updated 2 years ago
- Rip Raw is a small tool to analyse the memory of compromised Linux systems.☆133Updated 3 years ago
- macOS forensic timeline generator using the analysis result DBs of mac_apt☆95Updated 2 years ago
- acquire is a tool to quickly gather forensic artifacts from disk images or a live system into a lightweight container.☆112Updated 2 weeks ago
- File analysis and management framework.☆90Updated 2 years ago
- Bash Script to extract GNU/Linux forensic artifacts for digital forensic analysis and incident response.☆43Updated 2 years ago
- A PoC ransomware sample to test out your ransomware response strategy.☆213Updated 3 weeks ago
- TAPIR is a multi-user, client/server, incident response framework☆47Updated 3 years ago
- Threat Intel Platform for T-POTs☆157Updated last week
- YARI is an interactive debugger for YARA Language.☆89Updated 3 months ago
- A Feature Rich Modular Malware Configuration Extraction Utility for MalDuck☆130Updated 2 years ago
- Repository of tools and resources for analyzing Docker containers☆71Updated 2 years ago