sbidy / MacroMilterLinks
This python based milter (mail-filter) checks an incoming mail for suspicious VBA macro code in MS 20xx Office attachments (doc, xls, ppt ...).
☆39Updated 4 years ago
Alternatives and similar repositories for MacroMilter
Users that are interested in MacroMilter are comparing it to the libraries listed below
Sorting:
- Queries to parse sysmon event log file with microsoft logparser☆56Updated 10 years ago
- Fast Evidence Collector Toolkit is an incident response toolkit to collect evidences on a suspicious windows computer☆42Updated 5 years ago
- ☆39Updated 5 years ago
- DocBleachShell is the integration of the great DocBleach, https://github.com/docbleach/DocBleach Content Disarm and Reconstruction tool i…☆21Updated 3 years ago
- PowerShell scripts for Hard Drive forensics and parsing Windows Artifacts☆56Updated 5 years ago
- Traceroute improved wrapper for CSIRT and CERT operators☆38Updated last year
- Fast incident overview☆40Updated 8 years ago
- Proof of concept VBA code to add to Normal.dot to put restrictions on Word☆41Updated 8 years ago
- Lootbox downloads open directories shared on Twitter.☆34Updated 4 years ago
- Crack your macros like the math pros.☆33Updated 8 years ago
- Snort rules to detect local malware, phishing, and adult content by inspecting DNS responses from OpenDNS☆52Updated 9 years ago
- Checks observables/ioc in TheHive/Cortex against the MISP warningslists☆14Updated 7 years ago
- Different tools, koen.vanimpe@cudeso.be☆136Updated 3 months ago
- OSSEC Decoder & Rulesets for Sysmon Events☆15Updated 10 years ago
- Force-Directed Graph Generator for Volatility Ouputs☆26Updated 6 years ago
- Python unbup script for McAfee .bup files (with some additional fun features). This script is fully implemented in python it's not just a…☆37Updated 7 years ago
- Plugins to add funtionality to ProcDOT. http://www.procdot.com☆24Updated 2 years ago
- Sysmon configuration file template with default high-quality event tracing☆11Updated 8 years ago
- Script to parse Process Monitor XML log file, and give you a summary report.☆24Updated 9 years ago
- A security tool for detecting suspicious PDF modifications commonly found in BEC☆41Updated 9 years ago
- NCC Group Ransomware Simulator☆69Updated 9 years ago
- Connect your mail client/infrastructure to MISP in order to create events based on the information contained within mails.☆69Updated last year
- ☆49Updated 10 years ago
- onigiri - remote malware triage script☆24Updated 9 years ago
- The ContactDB project was initiated to cover the need for a tool to maintain contacts for CSIRT teams☆37Updated 3 years ago
- Automating forensic data extraction, reduction, and overall triage of cold disk and memory images.☆21Updated 6 years ago
- Generates visualizations from the output of flow tools such as SiLK.☆35Updated 8 years ago
- Standalone CIRCLean/KittenGroomer code to sanitize emails.☆11Updated 7 years ago
- BTG's purpose is to make fast and efficient search on IOC☆70Updated 6 years ago
- AYY LMAO☆22Updated 9 years ago