mikkolehtisalo / claimsman
Software for monitoring users' file access
☆52Updated 8 years ago
Alternatives and similar repositories for claimsman:
Users that are interested in claimsman are comparing it to the libraries listed below
- Recurse through a registry, identifying values with large data -- a registry malware hunter☆44Updated 8 years ago
- Cuckoo Sandbox Local Maltego Transforms Project☆49Updated 10 years ago
- Manage VT Alerts☆62Updated 8 years ago
- Cryptowall Tooling & Information☆35Updated 9 years ago
- ☆17Updated 7 years ago
- Unpack MIME attachments from a file and check them against virustotal.com☆45Updated 9 years ago
- ☆46Updated 7 years ago
- Rapid deployment of Windows environment (files, registry keys, mutex etc) to facilitate malware analysis☆42Updated 10 years ago
- The Stratosphere IPS is a free software IPS that uses network behavior to detect and block malicious actions.☆33Updated 8 years ago
- A Windows Event Processing Utility☆46Updated 7 years ago
- Automated memory forensics analysis☆33Updated 5 years ago
- Malware analysis using Docker project☆25Updated 9 years ago
- Network sinkhole for isolated malware analysis☆40Updated 7 years ago
- Script for generating Bro intel files from pdf or html reports☆76Updated 9 years ago
- Proof of concept VBA code to add to Normal.dot to put restrictions on Word☆41Updated 8 years ago
- **BETA** A simple buildscript for network security monitoring on RHEL/CentOS☆31Updated 7 years ago
- Some IR notes☆73Updated 8 years ago
- Cli interface to threatcrowd.org☆19Updated 7 years ago
- Portcullis Computer Security Co-ordinated Disclosure Toolkit☆24Updated 4 years ago
- Based on the Volatility framework, this script will run various plugins as well as create a timeline, or use YARA/ClamAV/VirusTotal to fi…☆49Updated 7 years ago
- It's like a polaroid, but for domains☆24Updated 10 years ago
- Honeypot log processor to create OTX Pulse entries☆28Updated last year
- Find permanent WMI event consumers on endpoints that could be used by APT actors.☆17Updated 8 years ago
- Yara is awesome, but sometimes you need to manipulate the data streams you're scanning in different ways.☆97Updated 10 years ago
- DocBleachShell is the integration of the great DocBleach, https://github.com/docbleach/DocBleach Content Disarm and Reconstruction tool i…☆21Updated 3 years ago
- Queries to parse sysmon event log file with microsoft logparser☆56Updated 10 years ago
- Data Exfiltration and Command Execution via AAAA Records☆67Updated 8 years ago
- Command-line Interface for Binar.ly☆37Updated 8 years ago
- Threat Analysis, Reconnaissance, and Data Intelligence System☆125Updated 9 years ago
- Lite version of PDF X-RAY that uses no backend☆36Updated 13 years ago