sbidy / MacroMilterLinks
This python based milter (mail-filter) checks an incoming mail for suspicious VBA macro code in MS 20xx Office attachments (doc, xls, ppt ...).
☆39Updated 4 years ago
Alternatives and similar repositories for MacroMilter
Users that are interested in MacroMilter are comparing it to the libraries listed below
Sorting:
- Checks observables/ioc in TheHive/Cortex against the MISP warningslists☆14Updated 7 years ago
- CIRCL system forensic tools or a jumble of tools to support forensic☆42Updated 2 years ago
- Carve Windows Prefetch files from arbitrary binary data☆16Updated 8 years ago
- Queries to parse sysmon event log file with microsoft logparser☆56Updated 10 years ago
- Fast Evidence Collector Toolkit is an incident response toolkit to collect evidences on a suspicious windows computer☆41Updated 5 years ago
- Fix acquired .evt - Windows Event Log files (Forensics)☆19Updated 9 years ago
- The ContactDB project was initiated to cover the need for a tool to maintain contacts for CSIRT teams☆37Updated 3 years ago
- Traceroute improved wrapper for CSIRT and CERT operators☆39Updated last year
- Crack your macros like the math pros.☆33Updated 8 years ago
- DocBleachShell is the integration of the great DocBleach, https://github.com/docbleach/DocBleach Content Disarm and Reconstruction tool i…☆21Updated 3 years ago
- Lite version of PDF X-RAY that uses no backend☆36Updated 14 years ago
- ☆39Updated 5 years ago
- Registry Miner☆14Updated 7 years ago
- ☆16Updated 10 years ago
- A Python script for indexing (putting) FireEye alert data into Elasticsearch...and notifying you too.☆16Updated 6 years ago
- Parses Java Cache IDX files☆40Updated 7 years ago
- Connect your mail client/infrastructure to MISP in order to create events based on the information contained within mails.☆69Updated 2 years ago
- A security tool for detecting suspicious PDF modifications commonly found in BEC☆41Updated 9 years ago
- PowerShell scripts for Hard Drive forensics and parsing Windows Artifacts☆56Updated 5 years ago
- Plugins to add funtionality to ProcDOT. http://www.procdot.com☆24Updated 2 years ago
- Generates visualizations from the output of flow tools such as SiLK.☆35Updated 8 years ago
- Python unbup script for McAfee .bup files (with some additional fun features). This script is fully implemented in python it's not just a…☆37Updated 7 years ago
- ☆33Updated last year
- Various tools and scripts☆43Updated 3 years ago
- BTG's purpose is to make fast and efficient search on IOC☆71Updated 7 years ago
- Generate a Yara rule to find base64-encoded files containg a specific keyword☆40Updated 7 years ago
- An Ubuntu 16.04 build containing Suricata, PulledPork, Bro, and Splunk☆23Updated 7 years ago
- Different tools, koen.vanimpe@cudeso.be☆136Updated 4 months ago
- API to use Cymru services☆27Updated 11 years ago
- Sandbox feature upgrade with the help of wrapped samples☆76Updated 7 years ago