joxeankoret / cosa-nostra
Cosa Nostra, a FOSS graph based malware clusterization toolkit.
☆230Updated last year
Alternatives and similar repositories for cosa-nostra
Users that are interested in cosa-nostra are comparing it to the libraries listed below
Sorting:
- Codex Gigas malware DNA profiling search engine discovers malware patterns and characteristics assisting individuals who are attracted in…☆155Updated 5 years ago
- VolDiff: Malware Memory Footprint Analysis based on Volatility☆194Updated 7 years ago
- Creating function call graphs based on radare2 framwork, plot fancy graphs and extract behavior indicators☆86Updated 7 years ago
- Collaborative malware analysis framework☆375Updated 6 years ago
- An environment for comprehensive, automated analysis of web-based exploits, based on Cuckoo sandbox.☆125Updated 9 years ago
- A Yara rule generator for finding related samples and hunting☆158Updated 2 years ago
- Tool written in python3 to determine where the AV signature is located in a binary/payload☆313Updated 7 years ago
- rVMI - A New Paradigm For Full System Analysis☆355Updated 7 years ago
- flare-dbg is a project meant to aid malware reverse engineers in rapidly developing debugger scripts.☆150Updated 7 years ago
- Automated malware unpacker☆119Updated 9 years ago
- Bunch of techniques potentially used by malware to detect analysis environments☆159Updated 8 years ago
- Detects code differentials between executables in disk and the corresponding processes/modules in memory☆115Updated 4 years ago
- Scripts for dealing with various ek's☆69Updated 8 years ago
- BASS - BASS Automated Signature Synthesizer☆175Updated 6 years ago
- A tool to detect and crash Cuckoo Sandbox☆293Updated 9 months ago
- ☆91Updated 8 years ago
- Simple shellcode decoder using unicorn-engine☆98Updated 9 years ago
- ☆109Updated 7 years ago
- Fancy Bear Source Code☆261Updated 8 years ago
- Malware Analysis Tool using Function Level Fuzzy Hashing☆190Updated 9 years ago
- Offline debugger for malware's reverse engineering☆113Updated 10 years ago
- Scalable Binary Data Extraction in Hadoop☆143Updated 10 years ago
- Small tool for disassembling shellcode (using objdump)☆148Updated 2 years ago
- The Multiplatform Linux Sandbox☆260Updated 3 years ago
- PyAna - Analyzing the Windows shellcode☆246Updated 9 years ago
- Various snippets created during malware analysis☆458Updated 2 years ago
- Malware Control Monitor☆87Updated 10 years ago
- inVtero.net: A high speed (Gbps) Forensics, Memory integrity & assurance. Includes offensive & defensive memory capabilities. Find/Extr…☆286Updated last year
- Command line tool for scanning streams within office documents plus xor db attack☆126Updated last year
- ROPMEMU is a framework to analyze, dissect and decompile complex code-reuse attacks.☆286Updated 8 years ago