mandiant / flashmingoLinks
Automatic analysis of SWF files based on some heuristics. Extensible via plugins.
☆119Updated 6 years ago
Alternatives and similar repositories for flashmingo
Users that are interested in flashmingo are comparing it to the libraries listed below
Sorting:
- Historical list of {Cobalt Strike,NanoHTTPD} servers☆121Updated 6 years ago
- Command line tool for scanning streams within office documents plus xor db attack☆126Updated last year
- Allows you to quickly query a Windows machine for RAM artifacts☆221Updated 4 years ago
- Lazy Office Analyzer☆122Updated 8 years ago
- ☆82Updated 5 years ago
- All materials from our Black Hat 2018 "Subverting Sysmon" talk☆135Updated 6 years ago
- This repository contains all public indicators identified by 401trg during the course of our investigations. It also includes relevant ya…☆122Updated 4 years ago
- Static analysis tools for Microsoft Office Open XML files and documents☆70Updated 7 years ago
- A framework to generate unique test cases based on code snippets to test techniques☆56Updated 4 years ago
- x86-64 Windows shellcode that recreates the Jurassic Park hacking scene (Ah, ah, ah... you didn't' say the magic word!)☆85Updated 4 years ago
- BASS - BASS Automated Signature Synthesizer☆175Updated 6 years ago
- ☆134Updated 6 years ago
- [BHUSA 2018 Arsenal] Integrated tool to analyze Drive-by Download attack☆108Updated 2 years ago
- Detecting Lateral Movement with Machine Learning☆137Updated 7 years ago
- ☆52Updated 10 years ago
- Malware Analysis, Threat Intelligence and Reverse Engineering: LABS☆82Updated 4 years ago
- Slides and reference material from Evading Autoruns presentation at DerbyCon 7 (September 2017)☆104Updated 4 years ago
- Python tool and library to help analyze files during malware triage and analysis.☆78Updated 4 years ago
- Community-based integrated malware identification system☆82Updated 2 years ago
- Cuckoo Sandbox plugin for extracts configuration data of known malware☆134Updated last year
- unXOR will search a XORed file and try to guess the key using known-plaintext attacks.☆142Updated 5 years ago
- Automated Tactics Techniques & Procedures☆255Updated 2 years ago
- An extensible honeypot framework☆93Updated 2 years ago
- general purpose and malware specific analysis tools☆102Updated 9 years ago
- MoP - "Master of Puppets" - Advanced malware tracking framework☆81Updated 9 months ago
- Simple DDE object detector☆56Updated 7 years ago
- A collection of infosec related scripts and information.☆53Updated 8 months ago
- Python abstract API for PassiveTotal services in the form of libraries and command line utilities.☆85Updated 2 years ago
- A little tool for detecting suspicious privileged NTLM connections, in particular Pass-The-Hash attack, based on event viewer logs.☆170Updated 4 months ago
- Pure Python parser for Application Compatibility Shim Databases (.sdb files)☆108Updated 4 years ago