mosesschwartz / extract_iocs
Extracts indicators of compromise (IOCs), including domain names, IPv4 addresses, email addresses, and hashes, from text.
☆13Updated 7 years ago
Alternatives and similar repositories for extract_iocs:
Users that are interested in extract_iocs are comparing it to the libraries listed below
- MalRecon - Basic Malware Reconnaissance and Analysis Tool☆26Updated 7 years ago
- Server for receiving autorun data from the clients☆13Updated 7 years ago
- ☆16Updated 10 years ago
- Here comes the paintrain!☆11Updated 8 years ago
- Checks observables/ioc in TheHive/Cortex against the MISP warningslists☆14Updated 7 years ago
- Spam Honeypot with Intelligent Virtual Analyzer☆10Updated 9 years ago
- (Unofficial) Python API for https://sslbl.abuse.ch/☆11Updated 8 years ago
- Multiple rules for yara-project for detect compiler/packer/protector☆33Updated 5 years ago
- Discover potential timestamps within the Windows Registry☆18Updated 10 years ago
- Detect malicious domain, Blablablablabla☆26Updated 8 years ago
- Crawl certificate information from censys☆8Updated 8 years ago
- IDS Utility Belt For Automating/Testing Various Things☆30Updated 4 years ago
- A tool to generate yara signatures from function blocks☆19Updated 10 years ago
- Extract information from MISP via the API☆15Updated 8 years ago
- FastIR Agent is a Windows service to execute FastIR Collector on demand☆14Updated 7 years ago
- Indicators of compromise relating to our report on APT10's targeting of global MSPs☆10Updated 7 years ago
- Parses Java Cache IDX files☆39Updated 7 years ago
- Duo MFA auditing tool to test users' likelihood of approving unexpected push notifications☆13Updated 6 years ago
- My personal experience in Threat Hunting and knowledge gained so far.☆19Updated 7 years ago
- Linux and Windows Hardening Points☆12Updated 7 years ago
- Crack your macros like the math pros.☆33Updated 8 years ago
- ☆12Updated 8 months ago
- Recon-ng modules that won't get accepted into the main distribution because of 3rd party dependencies.☆18Updated 11 years ago
- Mainframe bruter and screen automation utility.☆19Updated 3 years ago
- Volatility Plugins☆21Updated 9 years ago
- Python-based cloud node for local use☆11Updated 7 years ago
- Python libary to normalize Yara signatures☆19Updated 4 years ago
- BSidesLV 2015 Exploit Kit Analysis Workshop Files☆27Updated 9 years ago
- Fast Evidence Collector Toolkit is an incident response toolkit to collect evidences on a suspicious windows computer☆42Updated 4 years ago
- Force-Directed Graph Generator for Volatility Ouputs☆26Updated 6 years ago