fulmetalpackets / protohacking
This repository contains the code and PCAPS used for the SANS webinar, "Hacking Proprietary Protocols" given on February 23, 2021.
☆34Updated 2 years ago
Alternatives and similar repositories for protohacking:
Users that are interested in protohacking are comparing it to the libraries listed below
- Accelerating the collection, processing, analysis and outputting of digital forensic artefacts.☆32Updated last month
- Scripts and tools accompanying HP Threat Research blog posts and reports.☆50Updated 10 months ago
- An experimental script to perform bulk parsing of arbitrary file features with YARA and console logging.☆21Updated 2 years ago
- CyberChef - Detection Engineering, TI, DFIR, Malware Analysis Edition☆63Updated 2 years ago
- A tool to modify timestamps in a packet capture to a user selected date☆31Updated 3 years ago
- Scripts and lists to help generate YARA friendly string mutations☆20Updated last year
- A script to assist in processing forensic RAM captures for malware triage☆27Updated 4 years ago
- This repository aims to collect and document indicators from the different C2's listed in the C2-Matrix☆72Updated 3 years ago
- My Jupyter Notebooks☆36Updated 11 months ago
- labs_modern_malware_c2 Originally supporting Defcon workshop, will morph into Attack Defend for C2.☆18Updated 2 years ago
- A list of IOCs applicable to PoshC2☆24Updated 4 years ago
- Offensive Research Guide to Help Defense Improve Detection☆30Updated 2 years ago
- CSIRT Jump Bag☆27Updated 10 months ago
- Baseline a Windows System against LOLBAS☆25Updated 10 months ago
- Automatic detection engineering technical state compliance☆54Updated 7 months ago
- Converts Sigma detection rules to a Splunk alert configuration.☆13Updated 3 years ago
- A sample VHDX file with multiple verbose examples of forensic and anti-forensics artifacts. Meant to be basic and can be expanded upon. P…☆25Updated 2 years ago
- ☆38Updated 3 years ago
- Yara rules☆20Updated last year
- ☆26Updated 3 years ago
- Random tips and tricks RE: ransomware☆14Updated 3 years ago
- ☆28Updated last month
- A CALDERA plugin☆25Updated 7 months ago
- Supporting materials for my "Intelligence-Led Adversarial Threat Modelling with VECTR" workshop☆67Updated this week
- MasterParser is a simple, all-in-one, digital forensics artifact parser☆23Updated 3 years ago
- ☆41Updated 11 months ago
- SkillAegis is a platform to design, run, and monitor exercise scenarios, enhancing skills in applications like MISP and training users in…☆22Updated 2 weeks ago
- ShellSweeping the evil.☆52Updated 8 months ago
- A happy place for detection engineers, purple teamers and threat hunters focusing on macOS.☆21Updated 2 years ago
- Create a cool process tree like https://twitter.com/ACEResponder.☆35Updated 2 years ago