pandora-analysis / pandoraLinks
Pandora is an analysis framework to discover if a file is suspicious and conveniently show the results
☆265Updated last week
Alternatives and similar repositories for pandora
Users that are interested in pandora are comparing it to the libraries listed below
Sorting:
- Analyse a forensic target (such as a directory) to find and report files found and not found from CIRCL hashlookup public service - https…☆126Updated last year
- Chain Reactor is an open source framework for composing executables that simulate adversary behaviors and techniques on Linux endpoints.☆318Updated 3 months ago
- This script is made to collect the most valiable artifacts for foreniscs or incident reponse investigation rather than imaging the whole …☆202Updated 4 years ago
- Data visualization for blue teams☆126Updated 2 years ago
- Volatile Artifact Collector collects a snapshot of volatile data from a system. It tells you what is happening on a system, and is of par…☆255Updated 8 months ago
- The Threat Hunting In Rapid Iterations (THIRI) Jupyter notebook is designed as a research aide to let you rapidly prototype threat huntin…☆155Updated 3 years ago
- Rip Raw is a small tool to analyse the memory of compromised Linux systems.☆131Updated 3 years ago
- 🧭 The artifactcollector is a customizable agent to collect forensic artifacts on any Windows, macOS or Linux system☆291Updated 2 months ago
- Open Source Platform for storing, organizing, and searching documents related to cyber threats☆164Updated last year
- An application to analyze the EML file☆289Updated this week
- Artifact collection tool for *nix systems☆209Updated last year
- Threat Hunting tool about Sysmon and graphs☆334Updated 2 years ago
- A python script developed to process Windows memory images based on triage type.☆263Updated last year
- Russia / Ukraine 2022 conflict related IOCs from CERT Orange Cyberdefense Threat Intelligence Datalake☆175Updated 2 years ago
- Automated YARA Rule Standardization and Quality Assurance Tool☆228Updated last week
- LOKI2 - Simple IOC and YARA Scanner☆97Updated 2 weeks ago
- MISP Playbooks☆205Updated last month
- An opensource sigma conversion tool built using pysigma☆131Updated last month
- Yet Another Yara Automaton - Automatically curate open source yara rules and run scans☆285Updated last year
- ☆146Updated last month
- Rules generated from our investigations.☆196Updated last month
- How to setup a honeypot with an IDS, ELK and TLS traffic inspection☆158Updated 3 years ago
- Collection of Jupyter Notebooks by @fr0gger_☆172Updated last month
- ☆226Updated 2 years ago
- Sublime rules for email attack detection, prevention, and threat hunting.☆313Updated this week
- acquire is a tool to quickly gather forensic artifacts from disk images or a live system into a lightweight container.☆105Updated this week
- Threat Intel Platform for T-POTs☆157Updated this week
- Jupyter Notebooks for the Blue Team☆145Updated 3 months ago
- Cisco Orbital - Osquery queries by Talos☆134Updated 10 months ago
- HASH (HTTP Agnostic Software Honeypot)☆138Updated last year