Sample staging & detonation utility to be used in combination with Cuckoo Sandbox.
☆85Dec 5, 2023Updated 2 years ago
Alternatives and similar repositories for sflock
Users that are interested in sflock are comparing it to the libraries listed below
Sorting:
- ThreatTracker is a Python script designed to monitor and generate alerts on given sets of indicators of compromise (IOCs) indexed by a se…☆70Mar 9, 2015Updated 10 years ago
- Automated Virtual Machine Generation and Cloaking for Cuckoo Sandbox.☆516May 14, 2024Updated last year
- Your bag of handy codes for malware researchers☆120Mar 20, 2020Updated 5 years ago
- lkm rootkit☆15May 12, 2014Updated 11 years ago
- Mal Tindex is an Open Source tool for indexing binaries and help attributing malware campaigns☆67Jun 26, 2017Updated 8 years ago
- ☆15Mar 24, 2016Updated 9 years ago
- ☆10Oct 22, 2017Updated 8 years ago
- Analysis Correlation Engine☆26Sep 8, 2019Updated 6 years ago
- Rootkit tutorial code for the Beneath C Level blog - http://beneathclevel.blogspot.co.uk/☆21Feb 1, 2026Updated 3 weeks ago
- Builds json representation of PDF malware sample☆53Apr 11, 2011Updated 14 years ago
- YARA malware query accelerator (web frontend)☆437Feb 3, 2026Updated 3 weeks ago
- 🐧 A simple kernel-level rootkit☆21Mar 1, 2016Updated 9 years ago
- simple rootkit for computer security class☆15Dec 18, 2012Updated 13 years ago
- Socks5man is a Socks5 management tool and Python library☆12Mar 10, 2023Updated 2 years ago
- Lite version of PDF X-RAY that uses no backend☆38Nov 11, 2011Updated 14 years ago
- ☆19Sep 2, 2018Updated 7 years ago
- A Yara rule generator for finding related samples and hunting☆162Sep 11, 2022Updated 3 years ago
- Cockroach is your primitive & immortal swiss army knife.☆48Dec 8, 2021Updated 4 years ago
- Threat Feed Aggregation, Made Easy☆169Jul 13, 2020Updated 5 years ago
- Community modules for FAME☆65Dec 16, 2025Updated 2 months ago
- An experimental rootkit for Android☆26Feb 22, 2013Updated 13 years ago
- Minimal, consistent Python API for building integrations with malware sandboxes.☆142Jan 31, 2024Updated 2 years ago
- Flexible framework that allows automation to process cyber threat information and update endpoint defense tools.☆20Oct 24, 2018Updated 7 years ago
- zer0m0n driver for cuckoo sandbox☆87Jul 12, 2016Updated 9 years ago
- Modified edition of cuckoo community modules☆50May 12, 2017Updated 8 years ago
- Simple yara rule manager☆67Dec 27, 2022Updated 3 years ago
- A python library for building and using hash databases.☆22Feb 8, 2023Updated 3 years ago
- Parse YARA rules and operate over them more easily.☆194Feb 6, 2025Updated last year
- PhishDetect is a library to help identify phishing pages☆108May 11, 2023Updated 2 years ago
- A content inspecting SMTP proxy☆17Jun 9, 2014Updated 11 years ago
- Replay HTTP and HTTPS requests from a PCAP based on TLS Master Secrets.☆96Dec 8, 2021Updated 4 years ago
- BASS - BASS Automated Signature Synthesizer☆179Sep 19, 2018Updated 7 years ago
- Some IR notes☆73Jul 23, 2016Updated 9 years ago
- Identify botnet panels with Ensembled Decision Trees☆18Aug 3, 2016Updated 9 years ago
- Generate a Yara rule to find base64-encoded files containg a specific keyword☆40Jul 13, 2018Updated 7 years ago
- it's a simple LKM rootkit.☆12Aug 2, 2016Updated 9 years ago
- An active domain name query tool to help keep track of domain name movements...☆16Mar 28, 2021Updated 4 years ago
- ☆54Sep 6, 2020Updated 5 years ago
- ☆14May 30, 2018Updated 7 years ago