hjunker / ProcessBouncerLinks
ProcessBouncer is a simple but effective tool for blocking malware with a process-based approach. With a little fine-tuning this allows to effectively block most of current ransomware that is out there.
☆24Updated 4 years ago
Alternatives and similar repositories for ProcessBouncer
Users that are interested in ProcessBouncer are comparing it to the libraries listed below
Sorting:
- This script will pull and analyze syscalls in given application(s) allowing for easier security research purposes☆21Updated 4 years ago
- Pure Honeypots with an automated bash script☆20Updated 3 years ago
- ☆22Updated 4 years ago
- Check IOC provided by a MISP instance on Suricata events☆17Updated 5 years ago
- Triage automation for suspect URLs☆13Updated 5 years ago
- ☆12Updated 3 years ago
- The FastIR Server is a Web server to schedule FastIR Collector forensics collect thanks to the FastIR Agent☆12Updated 8 years ago
- Notebooks created to attack and secure Active Directory environments☆27Updated 5 years ago
- List CVEs and details that apply to your infrastructure (pre-inventoried).☆10Updated 4 years ago
- This repository contains all the config files and scripts used for our Open Source Endpoint monitoring project.☆34Updated 5 years ago
- A Passive DNS backend and collector☆31Updated 2 years ago
- FastIR Agent is a Windows service to execute FastIR Collector on demand☆14Updated 8 years ago
- Create an incident response triage toolkit for use with Windows or Linux.☆17Updated 4 years ago
- Automated Payload Test Controller☆10Updated 7 years ago
- An extendable tool to extract and aggregate IoCs from threat feeds☆33Updated last year
- Information Stealers Wall of Sheep (IS-WOS)☆12Updated 4 years ago
- Exchange your privileges for Domain Admin privs by abusing Exchange☆16Updated 5 years ago
- Proof-of-concept for phishing intelligence in Elastic☆15Updated 6 years ago
- A collection of tools adversaries commonly use in an attack.☆14Updated 6 months ago
- CIRCL system forensic tools or a jumble of tools to support forensic☆42Updated 2 years ago
- A script to assist in processing forensic RAM captures for malware triage☆27Updated 4 years ago
- Fast Evidence Collector Toolkit is an incident response toolkit to collect evidences on a suspicious windows computer☆42Updated 4 years ago
- RisingSun: Decoding SUNBURST C2 to identify infected hosts without network telemetry.☆10Updated 4 years ago
- Light System Examination Toolkit (LISET) - logs & activity & configuration gathering utility that comes handy in fast Windows incident re…☆30Updated 8 years ago
- Indicators of compromise relating to our report on APT10's targeting of global MSPs☆10Updated 7 years ago
- ☆11Updated 6 years ago
- DNS logging, detection, ...☆15Updated 3 years ago
- CertWatcher is a new take on monitoring for phishing sites. It is meant to be a set and forget service that will send you a daily report …☆11Updated 4 years ago
- Collection Of Scripts And Utilities For Windows Event Hunting☆18Updated 5 years ago
- ☆39Updated 5 years ago