jstrosch / graph-maldoc-similar-imagesLinks
A script that extracts embedded images from Office Open XML (OOXML) documents and generates image hash similarity graphs that cluster visually similar images together. The script computes the Average Hash of each extracted image, then graphs the images if they meet the similarity threshold. The script can be used as a technique for visually iden…
☆22Updated 4 years ago
Alternatives and similar repositories for graph-maldoc-similar-images
Users that are interested in graph-maldoc-similar-images are comparing it to the libraries listed below
Sorting:
- A python script that allows a researcher to merge databases from Malshare and Malware Bazaar to created enrriched datasets from SIEM tool…☆28Updated 5 years ago
- Malware similarity platform with modularity in mind.☆80Updated 4 years ago
- A powershell parser for https://github.com/ufrisk/MemProcFS☆45Updated 4 years ago
- Client library for the mwdb service by CERT Polska.☆42Updated 3 months ago
- A multi-threaded malware sample downloader based upon given MD-5/SHA-1/SHA-256 hashes, using multiple malware databases.☆30Updated 2 years ago
- Cockroach is your primitive & immortal swiss army knife.☆49Updated 4 years ago
- Collection of scripts used to analyse malware or emails☆20Updated 5 years ago
- A Modular MWDB Utility to Collect Fresh Malware Samples☆34Updated 4 years ago
- ConventionEngine - A Yara Rulepack for PDB Path Hunting☆37Updated 2 years ago
- Standardized Malware Analysis Tool☆56Updated 4 years ago
- Scans a malware file and lists down the related MBC (Malware Behavior Catalog) details.☆22Updated 3 years ago
- ☆15Updated 4 years ago
- Repository of tools, YARA rules, and code-snippets from Stairwell's research team.☆23Updated last year
- ☆27Updated 3 years ago
- Factual-rules-generator is an open source project which aims to generate YARA rules about installed software from a machine.☆75Updated 4 years ago
- Merge all Yara rules from official Yara github repository in one .yar file☆30Updated 7 years ago
- Python based CLI for MalwareBazaar☆39Updated 5 months ago
- YARA Rule Strings Statistics Calculator and Malware Research Helper☆14Updated 4 years ago
- FLARE floss applied to all unpacked+dumped samples in Malpedia, pre-processed for further use.☆70Updated 2 weeks ago
- SuperPeHasher is a wrapper for several hash algorithms dedicated to PE file.☆28Updated 4 years ago
- Carving tool based in Radare2 & Yara☆17Updated 7 years ago
- Random hunting ordiented yara rules☆98Updated 2 years ago
- A collection of Indicators of Compromise (IoCs), most aligning with samples derived from the signatures in the YARA-Signatures repo☆29Updated 5 years ago
- A tool to help malware analysts signature unique parts of RTF documents☆29Updated 2 weeks ago
- Core server components for Assemblyline 4 (Alerter, dispatcher, expiry, ingester, scaler, updater, ...)☆21Updated this week
- Repository with selected IOCs and YARA rules for threat hunting.☆35Updated 8 months ago
- Documentation and parsers for different anti-virus quarantine formats.☆42Updated 5 years ago
- Fast lookup server for NSRL and other hash database used in digital forensic☆48Updated 3 years ago
- Yara rules☆22Updated 2 years ago
- Python 3 library to build YARA rules.☆13Updated 4 years ago