karttoon / iocsLinks
IoC's, PCRE's, YARA's etc
☆24Updated 2 months ago
Alternatives and similar repositories for iocs
Users that are interested in iocs are comparing it to the libraries listed below
Sorting:
- Royal APT - APT15 - Related Information from NCC Group Cyber Defense Operations Research☆53Updated 7 years ago
- Generate bulk YARA rules from YAML input☆22Updated 5 years ago
- ☆27Updated 7 years ago
- Presentation materials for talks I've given.☆20Updated 5 years ago
- IDS Utility Belt For Automating/Testing Various Things☆30Updated 4 years ago
- Network detector for Winnti malware☆20Updated 7 years ago
- ssdeep cluster analysis for malware files☆30Updated 4 years ago
- CLI tool for testing Office documents with macros using MaliciousMacroBot☆11Updated last year
- A collection of Indicators of Compromise (IoCs), most aligning with samples derived from the signatures in the YARA-Signatures repo☆29Updated 4 years ago
- Notepad++ Syntax Highlighting for Languages Used by Cyber Security Professionals☆14Updated 5 years ago
- Historical Observations of Actionable Reputation Data☆13Updated 6 years ago
- ☆15Updated 4 years ago
- A Windows REG file to enable all default PowerShell logging on a system with PowerShell v5 installed☆16Updated 8 years ago
- SDBbot Unpacker Python 2.7☆9Updated 4 years ago
- Handy scripts to speed up malware analysis☆35Updated last year
- Notebooks created to attack and secure Active Directory environments☆27Updated 5 years ago
- Python parser for Red Canary's Atomic Red Team Yamls☆27Updated 6 years ago
- Malware samples observed in the wild from time to time☆12Updated 5 years ago
- Scripts targeting specific families☆13Updated 7 years ago
- Detecting PowerShell Empire, Metasploit Meterpreter and Cobalt Strike agents by payload size sequence analysis and host correlation☆16Updated 6 years ago
- Maltego transforms to pivot between PE files based on their VirusTotal codeblocks☆18Updated 3 years ago
- Crack your macros like the math pros.☆33Updated 8 years ago
- Links to malware-related YARA rules☆15Updated 2 years ago
- This repository contains various files linked to Operation Shadowhammer as it was originally discovered by Kaspersky Team.☆12Updated 6 years ago
- ☆12Updated 7 years ago
- Useful Windows and AD tools☆15Updated 3 years ago
- Repository of Information sharing on threats and indicators☆12Updated 5 years ago
- A PowerShell script to prevent Sysmon from writing its events☆15Updated 5 years ago
- Pcaps for PeddleCheap and implant communication + script for interpreting and decrypting pcaps.☆15Updated 7 years ago
- A collection of Volatility Framework plugins.☆26Updated 11 years ago