phdphuc / mac-a-mal-cuckoo
The current repository contains all the scripts needed to complement kernel-mode mac-a-mal malicious activity hooking on macOS to Cuckoo sandbox.
☆48Updated 6 years ago
Alternatives and similar repositories for mac-a-mal-cuckoo:
Users that are interested in mac-a-mal-cuckoo are comparing it to the libraries listed below
- The current repository contains all the scripts needed to build kernel-mode mac-a-mal malicious activity hooking on macOS.☆84Updated 6 years ago
- Yet Another YARA rule Generator☆62Updated 6 years ago
- ☆51Updated 6 years ago
- ☆99Updated 8 months ago
- This is a malware analyzer for Mac OS X that extends the Cuckoo Sandbox project (https://cuckoosandbox.org/)☆21Updated 8 years ago
- Mal Tindex is an Open Source tool for indexing binaries and help attributing malware campaigns☆67Updated 7 years ago
- An OS X analyzer for Cuckoo Sandbox project☆57Updated 9 years ago
- IDATACO IDA Pro Plugin☆47Updated 8 years ago
- A system to record malware using PANDA☆43Updated 5 years ago
- ☆26Updated 10 years ago
- Cuckoo Agent.☆23Updated 5 years ago
- Hansel - a simple but flexible search for IDA☆26Updated 5 years ago
- IDARay is an IDA Pro plugin that matches the database against multiple YARA files which themselves may contain multiple rules.☆18Updated 6 years ago
- An IDA Pro Plugin for embedding an IPython Kernel☆63Updated 5 years ago
- simple plugin to detect shellcode on Bro IDS with Unicorn☆33Updated 8 years ago
- ☆23Updated 5 years ago
- ☆42Updated 6 years ago
- A set of scripts for a radare-based malware code analysis workflow☆67Updated 6 years ago
- A Yara rule generator for finding related samples and hunting☆158Updated 2 years ago
- Creating function call graphs based on radare2 framwork, plot fancy graphs and extract behavior indicators☆86Updated 7 years ago
- IDA python plugin to scan binary with Yara rules☆172Updated last year
- Sublime Malware Research Tool☆65Updated 3 months ago
- Code for the DIMVA 2018 paper: "MemScrimper: Time- and Space-Efficient Storage of Malware Sandbox Memory Dumps"☆26Updated 5 years ago
- QEMU with rVMI extensions☆25Updated 7 years ago
- Imports MSDN documentation into IDA Pro☆51Updated 13 years ago
- Yet another rule generator for Yara☆27Updated 4 years ago
- Script analysis tool based on Frida.re☆129Updated 7 years ago
- automated-arancino is a lightweight analysis framework to automate malware experiments.☆15Updated 7 years ago
- ☆16Updated last year
- Proof-of-concept automated baremetal malware analysis framework.☆14Updated 9 years ago