sandflysecurity / sandfly-entropyscan
Entropy scanner for Linux to detect packed or encrypted binaries related to malware. Finds malicious files and Linux processes and gives output with cryptographic hashes.
☆144Updated 5 months ago
Related projects ⓘ
Alternatives and complementary repositories for sandfly-entropyscan
- simple YARA-based IOC scanner☆164Updated this week
- Rules Shared by the Community from 100 Days of YARA 2023☆78Updated last year
- JPCERT/CC public YARA rules repository☆103Updated 5 months ago
- Factual-rules-generator is an open source project which aims to generate YARA rules about installed software from a machine.☆76Updated 2 years ago
- YARA rule metadata specification and validation utility / Spécification et validation pour les règles YARA☆98Updated 2 months ago
- Automated YARA Rule Standardization and Quality Assurance Tool☆166Updated this week
- Collection of rules created using YARA-Signator over Malpedia☆112Updated last week
- File analysis and management framework.☆72Updated last year
- LOKI2 - Simple IOC and YARA Scanner☆80Updated 3 months ago
- Visually inspect and force decode YARA and regex matches found in both binary and text data. With Colors.☆107Updated 7 months ago
- YaraScanner is a file pattern-matching tool based on YARA rules.☆54Updated last year
- Login Pages Database forms a knowledge base on login pages related to malicious activities (C2 panels, phishing kits...).☆38Updated last year
- Linux Evidence Acquisition Framework☆113Updated last month
- Lightweight Python-Based Malware Analysis Pipeline☆29Updated last month
- The Linux DFIR Collector is a stand-alone collection tool for Gnu / Linux. Dump artifacts in json format with very few impacts on the hos…☆29Updated 2 years ago
- CyberChef - Detection Engineering, TI, DFIR, Malware Analysis Edition☆62Updated 2 years ago
- A Self-Contained Open-Source Cyberattack Experimentation Testbed☆35Updated 3 weeks ago
- Elastic Security Labs releases☆52Updated 3 weeks ago
- Hatching Triage public command-line utility and API library.☆65Updated last year
- BlackBerry Threat Research & Intelligence☆93Updated last year
- Malware similarity platform with modularity in mind.☆76Updated 3 years ago
- ELFEN: Automated Linux Malware Analysis Sandbox☆117Updated 4 months ago
- A guide on how to write fast and memory friendly YARA rules☆126Updated last year
- Harvest Linux forensic data for operational triage of an event.☆50Updated 5 months ago
- A YARA rules repository continuously updated for monitoring the old and new threats from articles, incidents responses ...☆138Updated last year
- A pySigma wrapper and langchain toolkit for automatic rule creation/translation☆66Updated last week
- Detection Engineering with YARA☆85Updated 10 months ago
- Yara Based Detection Engine for web browsers☆47Updated 3 years ago
- ☆92Updated this week
- Forensic Artifact Collection Tool Matrix☆75Updated last week