mandiant / VM-PackagesLinks
Chocolatey packages supporting the analysis environment projects FLARE-VM & Commando VM.
☆187Updated last week
Alternatives and similar repositories for VM-Packages
Users that are interested in VM-Packages are comparing it to the libraries listed below
Sorting:
- A ProcessMonitor visualization application written in rust.☆181Updated last year
- ☆203Updated 8 months ago
- The Windows Malware Analysis Reversing Core Tools☆95Updated 4 years ago
- PowerDecode is a PowerShell-based tool that allows to deobfuscate PowerShell scripts obfuscated across multiple layers. The tool performs…☆195Updated last year
- Collect-MemoryDump - Automated Creation of Windows Memory Snapshots for DFIR☆242Updated 3 months ago
- Repository of Yara Rules☆112Updated 3 months ago
- A C# based tool for analysing malicious OneNote documents☆114Updated 2 years ago
- Collection of scripts used to deobfuscate GOOTLOADER malware samples.☆62Updated 6 months ago
- Rules shared by the community from 100 Days of YARA 2024☆85Updated 6 months ago
- ☆136Updated 2 weeks ago
- ☆196Updated last year
- Free training course offered at Hack Space Con 2023☆138Updated 2 years ago
- A specification and style guide for YARA rules☆50Updated last year
- A python script developed to process Windows memory images based on triage type.☆263Updated last year
- ☆251Updated last year
- ☆233Updated last month
- A collection of tools, scripts and personal research☆138Updated 2 weeks ago
- Jupyter Notebooks for the Blue Team☆145Updated 3 months ago
- LOLESXi is a curated compilation of binaries/scripts available in VMware ESXi that are were used to by adversaries in their intrusions. T…☆126Updated 5 months ago
- Dump quarantined files from Windows Defender☆64Updated 3 years ago
- Memory acquisition for Linux that makes sense.☆199Updated last year
- IATelligence is a Python script that will extract the IAT of a PE file and request GPT to get more information about the API and the ATT&…☆367Updated 2 years ago
- Automated YARA Rule Standardization and Quality Assurance Tool☆228Updated last week
- ☆136Updated 2 years ago
- LOLAPPS is a compendium of applications that can be used to carry out day-to-day exploitation.☆188Updated 4 months ago
- File analysis and management framework.☆88Updated last year
- A Jupyter notebook to assist with the analysis of the output generated from Volatility memory extraction framework.☆96Updated 2 years ago
- ☆122Updated last year
- $MFT directory tree reconstruction & FILE record info☆306Updated 9 months ago
- Elastic Security Labs releases☆75Updated last week