quarkslab / irmaLinks
IRMA is an asynchronous & customizable analysis system for suspicious files.
☆273Updated 2 years ago
Alternatives and similar repositories for irma
Users that are interested in irma are comparing it to the libraries listed below
Sorting:
- ☆205Updated 2 years ago
- VolDiff: Malware Memory Footprint Analysis based on Volatility☆194Updated 8 years ago
- Django web interface for managing Yara rules☆194Updated 7 years ago
- 16,432 Free Yara rules created by☆387Updated 6 years ago
- Collaborative malware analysis framework☆377Updated 6 years ago
- Auto Installer Script for Cuckoo Sandbox☆164Updated 7 years ago
- CrowdStrike Feed Management System. CrowdFMS is a framework for automating collection and processing of samples from VirusTotal, by lever…☆128Updated 6 years ago
- Automatic Yara Rule Generation☆335Updated 9 years ago
- Protocol Analysis/Decoder Framework☆495Updated 2 years ago
- CRITs Services Collection☆184Updated 4 years ago
- An open source framework for enterprise level automated analysis.☆395Updated 3 years ago
- Modified edition of cuckoo☆270Updated 6 years ago
- Codex Gigas malware DNA profiling search engine discovers malware patterns and characteristics assisting individuals who are attracted in…☆155Updated 5 years ago
- Modified edition of cuckoo☆402Updated 7 years ago
- A Yara rule generator for finding related samples and hunting☆159Updated 3 years ago
- Docker container for MISP☆96Updated 7 years ago
- ☆172Updated 4 years ago
- ☆152Updated 6 years ago
- File Scanning Framework☆293Updated 4 years ago
- VolatilityBot – An automated memory analyzer for malware samples and memory dumps☆270Updated 4 years ago
- Differential Analysis of Malware in Memory☆212Updated 8 years ago
- Malware Repository Framework☆99Updated 7 years ago
- Automated Docker MISP container - Malware Information Sharing Platform and Threat Sharing☆175Updated 4 years ago
- Threat Feed Aggregation, Made Easy☆168Updated 5 years ago
- Web interface for the Volatility Memory Forensics Framework☆259Updated 7 years ago
- Extension to Cuckoo Sandbox open source projects, adds support to AWS cloud functionalities and enables running emulation on auto-scaling…☆136Updated 3 years ago
- Deception based detection techniques mapped to the MITRE’s ATT&CK framework☆289Updated 7 years ago
- Dovehawk is a Zeek module that automatically imports MISP indicators and reports Sightings☆121Updated 4 years ago
- Web App for Volatility framework☆386Updated last month
- Repository of modules and signatures contributed by the community☆329Updated 2 years ago