sbidy / MacroMilterLinks
This python based milter (mail-filter) checks an incoming mail for suspicious VBA macro code in MS 20xx Office attachments (doc, xls, ppt ...).
☆39Updated 4 years ago
Alternatives and similar repositories for MacroMilter
Users that are interested in MacroMilter are comparing it to the libraries listed below
Sorting:
- Traceroute improved wrapper for CSIRT and CERT operators☆38Updated 11 months ago
- DocBleachShell is the integration of the great DocBleach, https://github.com/docbleach/DocBleach Content Disarm and Reconstruction tool i…☆21Updated 3 years ago
- Generates visualizations from the output of flow tools such as SiLK.☆35Updated 8 years ago
- OSSEC Decoder & Rulesets for Sysmon Events☆15Updated 10 years ago
- Fast Evidence Collector Toolkit is an incident response toolkit to collect evidences on a suspicious windows computer☆42Updated 5 years ago
- Queries to parse sysmon event log file with microsoft logparser☆56Updated 10 years ago
- Plugins to add funtionality to ProcDOT. http://www.procdot.com☆23Updated last year
- Different tools, koen.vanimpe@cudeso.be☆136Updated 2 months ago
- Sysmon configuration file template with default high-quality event tracing☆11Updated 7 years ago
- The ContactDB project was initiated to cover the need for a tool to maintain contacts for CSIRT teams☆37Updated 3 years ago
- Automating forensic data extraction, reduction, and overall triage of cold disk and memory images.☆21Updated 6 years ago
- Integrating Sysinternals Autoruns’ logs into Security Onion☆31Updated last year
- An Ubuntu 16.04 build containing Suricata, PulledPork, Bro, and Splunk☆23Updated 7 years ago
- Connect your mail client/infrastructure to MISP in order to create events based on the information contained within mails.☆69Updated last year
- This repository contains all the config files and scripts used for our Open Source Endpoint monitoring project.☆34Updated 6 years ago
- BTG's purpose is to make fast and efficient search on IOC☆70Updated 6 years ago
- Checks observables/ioc in TheHive/Cortex against the MISP warningslists☆14Updated 7 years ago
- Validates yara rules and tries to repair the broken ones.☆40Updated 5 years ago
- Force-Directed Graph Generator for Volatility Ouputs☆26Updated 6 years ago
- Registry Miner☆14Updated 7 years ago
- Python unbup script for McAfee .bup files (with some additional fun features). This script is fully implemented in python it's not just a…☆37Updated 7 years ago
- PowerShell scripts for Hard Drive forensics and parsing Windows Artifacts☆56Updated 4 years ago
- Parses Java Cache IDX files☆39Updated 7 years ago
- Carve Windows Prefetch files from arbitrary binary data☆16Updated 8 years ago
- Fix acquired .evt - Windows Event Log files (Forensics)☆19Updated 9 years ago
- A Python script for indexing (putting) FireEye alert data into Elasticsearch...and notifying you too.☆16Updated 6 years ago
- Technical add-on to ingest json formatted volatility memory analysis plugin outputs☆13Updated 7 years ago
- Python script to automatically create sigma rules from The hive observables☆25Updated 6 years ago
- S4A main repository. SaltStack states, install script and build scripts☆26Updated last week
- Fast incident overview☆40Updated 8 years ago