ktneely / ir-scripts
Random scripts for log mining, intel gathering, network querying, and other incident response-ish activities
☆16Updated 2 years ago
Alternatives and similar repositories for ir-scripts:
Users that are interested in ir-scripts are comparing it to the libraries listed below
- Fast Evidence Collector Toolkit is an incident response toolkit to collect evidences on a suspicious windows computer☆42Updated 4 years ago
- Threat Intelligence distribution☆30Updated 9 years ago
- Cli interface to threatcrowd.org☆19Updated 7 years ago
- CRITs IOC Visualization in Maltego☆28Updated 10 years ago
- Python script that gets IOC from MISP and converts it into BRO intel files.☆13Updated 8 years ago
- Home to the ActorTrackr source code☆24Updated 7 years ago
- A REST API server for yara event notifications. Mapping file hashes to yara signatures in Elasticsearch for easy hash lookup or finding h…☆19Updated 9 years ago
- Maltego Transform to put entities into MISP events☆26Updated 3 years ago
- Extract information from MISP via the API☆15Updated 8 years ago
- Automation for VirusTotal☆31Updated 8 years ago
- Script for pulling events from a MISP database and converting them to Autofocus queries.☆13Updated 9 years ago
- Python script to pull various IOCs from PDFs☆15Updated 10 years ago
- A Maltego transform and machine to identify possible phishing vectors using permutated domains☆16Updated 9 years ago
- Public Maltego Transforms☆24Updated 7 years ago
- A browser extension that seamlessly integrates your yara match notifications into VirusTotal Intelligence.☆17Updated 10 years ago
- Metadata Inspection Database Alerting System☆42Updated 11 years ago
- Unpack MIME attachments from a file and check them against virustotal.com☆45Updated 8 years ago
- Manage VT Alerts☆62Updated 8 years ago
- API Tools☆27Updated 8 years ago
- Beholder is a shell script which installs and configures essentials to peer into your network activity.☆19Updated 7 years ago
- Useful scripts, rules etc. for use with YARA☆27Updated 4 years ago
- Just another tool to extract Indicator of compromise (ioc) from files☆29Updated 9 years ago
- It's like a polaroid, but for domains☆24Updated 10 years ago
- Transforms for the AlienVault OTX service☆39Updated 8 years ago
- Cuckoo Sandbox Local Maltego Transforms Project☆49Updated 10 years ago
- Malware Analysis Zoo☆25Updated 8 years ago
- ☆37Updated 10 years ago
- Multiple rules for yara-project for detect compiler/packer/protector☆33Updated 5 years ago
- integrating bro into yara☆33Updated 10 years ago
- ARCHIVED ce1sus, a threat information database ARCHIVED☆28Updated 9 years ago