sandflysecurity / sandfly-entropyscan
Entropy scanner for Linux to detect packed or encrypted binaries related to malware. Finds malicious files and Linux processes and gives output with cryptographic hashes.
☆155Updated 11 months ago
Alternatives and similar repositories for sandfly-entropyscan
Users that are interested in sandfly-entropyscan are comparing it to the libraries listed below
Sorting:
- simple YARA-based IOC scanner☆169Updated 3 months ago
- A YARA rules repository continuously updated for monitoring the old and new threats from articles, incidents responses ...☆139Updated last year
- SubCrawl is a modular framework for discovering open directories, identifying unique content through signatures and organizing the data w…☆146Updated last year
- File analysis and management framework.☆83Updated last year
- A toolkit for the post-mortem examination of Docker containers from forensic HDD copies☆99Updated last year
- Valhalla API Client☆68Updated 2 years ago
- Collection of rules created using YARA-Signator over Malpedia☆128Updated 6 months ago
- Anything Sysmon related from the MSTIC R&D team☆153Updated 11 months ago
- Implementation of RITA (Real Intelligence Threat Analytics) in Jupyter Notebook with improved scoring algorithm.☆202Updated 2 years ago
- YARA rule metadata specification and validation utility / Spécification et validation pour les règles YARA☆104Updated this week
- Elastic Security Labs releases☆63Updated last month
- ☆69Updated 2 months ago
- Rules Shared by the Community from 100 Days of YARA 2023☆76Updated 2 years ago
- Rip Raw is a small tool to analyse the memory of compromised Linux systems.☆130Updated 3 years ago
- Cisco Orbital - Osquery queries by Talos☆131Updated 8 months ago
- A zero dependency and customizable Python library for scanning Windows and Linux process memory.☆66Updated last year
- JPCERT/CC public YARA rules repository☆106Updated 5 months ago
- Automated YARA Rule Standardization and Quality Assurance Tool☆218Updated this week
- Visually inspect and force decode YARA and regex matches found in both binary and text data. With Colors.☆123Updated 5 months ago
- LOKI2 - Simple IOC and YARA Scanner☆93Updated 9 months ago
- Further investigation in to APT campaigns disclosed by private security firms and security agencies☆86Updated 2 years ago
- YaraScanner is a file pattern-matching tool based on YARA rules.☆57Updated 2 years ago
- yara detection rules for hunting with the threathunting-keywords project☆117Updated this week
- A python script developed to process Windows memory images based on triage type.☆262Updated last year
- Lupo - Malware IOC Extractor. Debugging module for Malware Analysis Automation☆106Updated 3 years ago
- Tool to analyze and detect MITM phishing toolkits on the web.☆81Updated 3 years ago
- Yara Based Detection Engine for web browsers☆47Updated 3 years ago
- Initial triage of Windows Event logs☆97Updated 10 months ago
- A Cobalt Strike Scanner that retrieves detected Team Server beacons into a JSON object☆166Updated 2 years ago
- YARA rule analyzer to improve rule quality and performance☆100Updated last month