proferosec / Threat-Intelligence
A collection of threat intelligence data such as IOC, Yara and Snort/Suricata Rules etc.
☆10Updated 5 years ago
Alternatives and similar repositories for Threat-Intelligence:
Users that are interested in Threat-Intelligence are comparing it to the libraries listed below
- ☆12Updated 3 years ago
- Crack your macros like the math pros.☆33Updated 8 years ago
- Python emulator for Excel XLM macros.☆18Updated 4 years ago
- Presentation materials for talks I've given.☆20Updated 5 years ago
- Indicators of compromise relating to our report on APT10's targeting of global MSPs☆10Updated 7 years ago
- ☆12Updated 6 years ago
- ☆10Updated 4 years ago
- Set of utilities for getting information about Windows Events☆15Updated 6 years ago
- Royal APT - APT15 - Related Information from NCC Group Cyber Defense Operations Research☆53Updated 6 years ago
- Various snippets created during malware analysis☆22Updated 6 years ago
- ☆23Updated 4 years ago
- Links to malware-related YARA rules☆14Updated 2 years ago
- Trace ScriptBlock execution for powershell v2☆40Updated 5 years ago
- FastIR Agent is a Windows service to execute FastIR Collector on demand☆14Updated 7 years ago
- Crowdstrike Falcon Host script for iterating through instances to get alert and other relevant data☆13Updated 5 years ago
- Some rules, scripts of some use to us☆9Updated 4 months ago
- Steezy - Ghetto Yara Generation☆15Updated last year
- Proof of concept communications from C# via a web browser process☆21Updated 6 years ago
- Maltego transforms to pivot between PE files based on their VirusTotal codeblocks☆18Updated 3 years ago
- Plugins for the Viper Framework☆14Updated 5 years ago
- Script to parse Process Monitor XML log file, and give you a summary report.☆23Updated 8 years ago
- Carve $MFT records from a chunk of data (for instance a memory dump)☆16Updated 8 years ago
- This repository regroups the Yara Rules for the Unprotect Project☆24Updated 4 years ago
- Generate YARA rules for OOXML documents.☆38Updated last year
- A Maltego transform for VirusTotal Submitter Information☆32Updated 5 years ago
- A collection of Indicators of Compromise (IoCs), most aligning with samples derived from the signatures in the YARA-Signatures repo☆30Updated 4 years ago
- Repository of Information sharing on threats and indicators☆12Updated 4 years ago
- Plugins to add funtionality to ProcDOT. http://www.procdot.com☆23Updated last year
- Server for receiving autorun data from the clients☆13Updated 7 years ago
- A set of tools for collecting forensic information☆26Updated 4 years ago