rabbitstack / fibratusLinks
Adversary tradecraft detection, protection, and hunting
☆2,351Updated this week
Alternatives and similar repositories for fibratus
Users that are interested in fibratus are comparing it to the libraries listed below
Sorting:
- Windows kernel and user mode emulation.☆1,706Updated 3 months ago
- The FLARE team's open-source tool to identify capabilities in executable files.☆5,412Updated this week
- Scans all running processes. Recognizes and dumps a variety of potentially malicious implants (replaced/implanted PEs, shellcodes, hooks,…☆2,194Updated last month
- FLARE Obfuscated String Solver - Automatically extract obfuscated strings from malware.☆3,586Updated this week
- Python module for viewing Portable Executable (PE) files in a tree-view using pefile and PyQt5. Can also be used with IDA Pro and Rekall …☆1,330Updated 3 years ago
- FakeNet-NG - Next Generation Dynamic Network Analysis Tool☆1,950Updated 3 months ago
- Scans a given process. Recognizes and dumps a variety of potentially malicious implants (replaced/injected PEs, shellcodes, hooks, in-mem…☆3,373Updated last month
- A static analyzer for PE executables.☆1,069Updated last year
- Set of tools to analyze Windows sandboxes for exposed attack surface.☆2,195Updated last month
- VirusTotal Wanna Be - Now with 100% more Hipster☆1,686Updated 2 years ago
- Collaborative Malware Analysis Platform at Scale☆754Updated 3 months ago
- Python scriptable Reverse Engineering Sandbox, a Virtual Machine instrumentation and inspection framework based on QEMU☆1,671Updated last year
- Noriben - Portable, Simple, Malware Analysis Sandbox☆1,167Updated 3 months ago
- Portable Executable reversing tool with a friendly GUI☆3,183Updated 2 months ago
- DRAKVUF Sandbox - automated hypervisor-level malware analysis system☆1,163Updated this week
- Malwoverview is a first response tool used for threat hunting and offers intel information from Virus Total, Hybrid Analysis, URLHaus, Po…☆3,289Updated 5 months ago
- A True Instrumentable Binary Emulation Framework☆5,537Updated last week
- Open EDR public repository☆2,476Updated last year
- Interactive CTF Exploration Tool☆1,658Updated 3 years ago
- Rekall Memory Forensic Framework☆1,962Updated 4 years ago
- A Pin Tool for tracing API calls etc☆1,494Updated last month
- The pattern matching swiss knife☆8,924Updated last month
- pefile is a Python module to read and work with PE (Portable Executable) files☆1,962Updated 10 months ago
- Malware Configuration And Payload Extraction☆2,535Updated this week
- Network Analysis Tool☆3,253Updated 2 years ago
- Digging Deeper....☆3,355Updated this week
- wtf is a distributed, code-coverage guided, customizable, cross-platform snapshot-based fuzzer designed for attacking user and / or kerne…☆1,634Updated 2 weeks ago
- Windows System Call Tables (NT/2000/XP/2003/Vista/7/8/10/11)☆2,369Updated 2 months ago
- Pafish is a testing tool that uses different techniques to detect virtual machines and malware analysis environments in the same way that…☆3,723Updated last year
- Utilities for Sysmon☆1,529Updated 4 months ago