fox-it / cisco-ios-xe-implant-detection
Cisco IOS XE implant scanning & detection (CVE-2023-20198, CVE-2023-20273)
☆37Updated last year
Alternatives and similar repositories for cisco-ios-xe-implant-detection:
Users that are interested in cisco-ios-xe-implant-detection are comparing it to the libraries listed below
- CyberChef - Detection Engineering, TI, DFIR, Malware Analysis Edition☆63Updated 2 years ago
- HTTP Headers Hashing (HHHash) is a technique used to create a fingerprint of an HTTP server based on the headers it returns.☆75Updated last year
- Providing Azure pipelines to create an infrastructure and run Atomic tests.☆50Updated last year
- create a "simulated internet" cyber range environment☆15Updated 3 weeks ago
- yara detection rules for hunting with the threathunting-keywords project☆105Updated last month
- ShellSweeping the evil.☆52Updated 8 months ago
- ☆36Updated 11 months ago
- ☆32Updated 11 months ago
- Living off the False Positive!☆34Updated last month
- ☆32Updated last year
- ☆21Updated 2 years ago
- Automatically spider the result set of a Censys/Shodan search and download all files where the file name or folder path matches a regex.☆27Updated last year
- Slides of my public talks☆54Updated last year
- Cloud, CDN, and marketing services leveraged by cybercriminals and APT groups☆59Updated 2 years ago
- CIS Benchmark testing of Windows SIEM configuration☆44Updated last year
- This repository contains supplemental items including IOCs, and signatures discussed in Huntress blogposts, and other media.☆35Updated 2 months ago
- ☆15Updated 3 years ago
- Placeholder for my detection repo and misc detection engineering content☆42Updated last year
- ☆79Updated last year
- MalStatWare automates malware analysis with Python. Extract key details like file size, type, hash, path, and digital signature. It analy…☆29Updated 9 months ago
- PacketSifter is a tool/script that is designed to aid analysts in sifting through a packet capture (pcap) to find noteworthy traffic. Pac…☆95Updated 3 years ago
- Look into EDR events from network☆23Updated 10 months ago
- Leveraging MISP indicators via a pDNS-based infrastructure as a poor man’s SOC.☆51Updated last month
- Citrix Scanner for CVE-2023-3519☆49Updated last year
- Yara Rules for Modern Malware☆73Updated last year
- EnumVolcano is an open source Bash script which is used to perform automated enumeration for privilege escalation. This tool is dedicated…☆24Updated 2 years ago
- A pySigma wrapper and langchain toolkit for automatic rule creation/translation☆75Updated this week
- A simple tool designed to create Atomic Red Team tests with ease.☆37Updated 2 months ago
- A simple command line program to help defender test their detections for network beacon patterns and domain fronting☆69Updated 3 years ago
- Open IOC sharing platform☆54Updated 3 months ago