pan-unit42 / wireshark-tutorial-Dridex-trafficLinks
pcaps for Wireshark tutorial about examining Dridex infection traffic
☆17Updated 5 years ago
Alternatives and similar repositories for wireshark-tutorial-Dridex-traffic
Users that are interested in wireshark-tutorial-Dridex-traffic are comparing it to the libraries listed below
Sorting:
- Collection of walkthroughs on various threat hunting techniques☆76Updated 5 years ago
- Tool used to perform threat intelligence against packet data☆36Updated last year
- Threat intelligence and threat detection indicators (IOC, IOA)☆52Updated 5 years ago
- My Jupyter Notebooks☆36Updated 10 months ago
- A python script to turn Ubuntu Desktop in a one stop security platform. The InfoSec Fortress installs the packages,tools, and resources t…☆56Updated 4 years ago
- A MITRE ATT&CK Lookup Tool☆46Updated last year
- Identifies physical locations where a laptop has been based upon wireless profiles and wireless data recorded in event logs☆98Updated 4 years ago
- THOR MITRE ATT&CK Framework Coverage☆25Updated 5 years ago
- ☆39Updated 5 years ago
- ☆77Updated 6 years ago
- Acheron is a RESTful vulnerability assessment and management framework built around search and dedicated to terminal extensibility.☆34Updated 3 years ago
- Repository with Sample threat hunting notebooks on Security Event Log Data Sources☆69Updated 3 years ago
- Incident response teams usually working on the offline data, collecting the evidence, then analyze the data☆45Updated 4 years ago
- Use Terraform to Provision Your Own Cloud-Based Remote Browsing Workstation☆26Updated last year
- Hunt malware with Volatility☆47Updated 6 months ago
- Submits multiple domains to VirusTotal API☆59Updated 4 years ago
- Automagically extract forensic timeline from volatile memory dump☆132Updated last year
- Script that checks for available updates for the most commonly used Digital Forensics tools☆60Updated 5 years ago
- A script to assist in processing forensic RAM captures for malware triage☆26Updated 4 years ago
- Web interface for monitoring and interacting with Netflow data stored in Silk repositories.☆13Updated 6 years ago
- ☆30Updated 7 years ago
- Sharing Threat Hunting runbooks☆25Updated 6 years ago
- Notes from my "Implementing a Kick-Butt Training Program: Blue Team GO!" talk☆12Updated 6 years ago
- A completely unsupported set of scripts used in SANS FOR572, Advanced Network Forensics and Analysis☆28Updated 5 months ago
- Learning by Practising - Hack & Detect - A Practical Guide to Hacking and its Detection via network forensics☆77Updated 2 years ago
- Cheat sheets for threat hunting, detection and other stuff.☆34Updated 3 years ago
- ☆13Updated 6 years ago
- BlueSploit is a DFIR framework with the main purpose being to quickly capture artifacts for later review.☆32Updated 6 years ago
- These are some of the commands which I use frequently during Malware Analysis and DFIR.☆24Updated 2 years ago
- Penguin OS Forensic (or Flight) Recorder☆40Updated last year