joxeankoret / cosa-nostraView external linksLinks
Cosa Nostra, a FOSS graph based malware clusterization toolkit.
☆232Jan 18, 2024Updated 2 years ago
Alternatives and similar repositories for cosa-nostra
Users that are interested in cosa-nostra are comparing it to the libraries listed below
Sorting:
- Mal Tindex is an Open Source tool for indexing binaries and help attributing malware campaigns☆67Jun 26, 2017Updated 8 years ago
- Using WinDBG to tap into JavaScript and help with deobfuscation and browser exploit detection☆82Mar 22, 2017Updated 8 years ago
- BASS - BASS Automated Signature Synthesizer☆179Sep 19, 2018Updated 7 years ago
- Fancy Bear Source Code☆263Jan 9, 2017Updated 9 years ago
- Automated Exploit generation with WinDBG☆190Oct 18, 2016Updated 9 years ago
- POC for IAT Parsing Payloads☆48Jan 1, 2017Updated 9 years ago
- VolatilityBot – An automated memory analyzer for malware samples and memory dumps☆270Jun 15, 2021Updated 4 years ago
- SSMA - Simple Static Malware Analyzer [This project is not maintained anymore by me]☆410Apr 21, 2020Updated 5 years ago
- Modular file scanning/analysis framework☆621Oct 8, 2019Updated 6 years ago
- Command line tool for scanning streams within office documents plus xor db attack☆126Sep 23, 2023Updated 2 years ago
- ☆85Apr 17, 2020Updated 5 years ago
- Collaborative malware analysis framework☆380Jan 22, 2019Updated 7 years ago
- inVtero.net: A high speed (Gbps) Forensics, Memory integrity & assurance. Includes offensive & defensive memory capabilities. Find/Extr…☆294Sep 30, 2023Updated 2 years ago
- ☆19Sep 2, 2018Updated 7 years ago
- Codex Gigas malware DNA profiling search engine discovers malware patterns and characteristics assisting individuals who are attracted in…☆156Dec 20, 2019Updated 6 years ago
- Builds malware analysis Windows VMs so that you don't have to.☆1,044Aug 23, 2021Updated 4 years ago
- IDATACO IDA Pro Plugin☆45Jun 14, 2016Updated 9 years ago
- FAME Automates Malware Evaluation☆926Dec 16, 2025Updated 2 months ago
- Various snippets created during malware analysis☆465Oct 3, 2025Updated 4 months ago
- A static analyzer for PE executables.☆1,104Jan 30, 2026Updated 2 weeks ago
- ATrace is a tool for tracing execution of binaries on Windows.☆240Nov 19, 2025Updated 2 months ago
- A Yara rule generator for finding related samples and hunting☆162Sep 11, 2022Updated 3 years ago
- a Malware/Threat Analyst Desktop☆89Aug 25, 2015Updated 10 years ago
- Malware static analysis framework☆185Apr 1, 2020Updated 5 years ago
- revised "peHash: A Novel Approach to Fast Malware Clustering"☆21Jul 13, 2016Updated 9 years ago
- ph0neutria is a malware zoo builder that sources samples straight from the wild. Everything is stored in Viper for ease of access and man…☆302Apr 24, 2020Updated 5 years ago
- The Inspector tool is a privilege escalation helper (PoC), easy to deployed on web server, this tool can list process running with root, …☆122Oct 2, 2018Updated 7 years ago
- Analyse SQL injection attempts in web server logs☆82Jan 11, 2017Updated 9 years ago
- (extensible) Data Exfiltration Toolkit (DET)☆828Nov 3, 2017Updated 8 years ago
- Teaching old shellcode new tricks☆208Aug 1, 2017Updated 8 years ago
- PyMal is a python based interactive Malware Analysis Framework. It is built on the top of three pure python programes Pefile, Pydbg and V…☆44Jul 10, 2016Updated 9 years ago
- IDAtropy is a plugin for Hex-Ray's IDA Pro designed to generate charts of entropy and histograms using the power of idapython and matplot…☆142Apr 16, 2021Updated 4 years ago
- Ragpicker is a Plugin based malware crawler with pre-analysis and reporting functionalities. Use this tool if you are testing antivirus p…☆94Aug 7, 2015Updated 10 years ago
- Creating function call graphs based on radare2 framwork, plot fancy graphs and extract behavior indicators☆86Jun 17, 2017Updated 8 years ago
- Run IDA Pro disassembler in Docker containers for automating, scaling and distributing the use of IDAPython scripts.☆296Nov 23, 2017Updated 8 years ago
- kernel exploitation helper class☆77Nov 26, 2016Updated 9 years ago
- PEframe is a open source tool to perform static analysis on Portable Executable malware and malicious MS Office documents.