ssp4rk / threatintel
☆11Updated 3 years ago
Alternatives and similar repositories for threatintel:
Users that are interested in threatintel are comparing it to the libraries listed below
- Maltego transforms to pivot between PE files based on their VirusTotal codeblocks☆18Updated 3 years ago
- Steezy - Ghetto Yara Generation☆15Updated last year
- ☆15Updated 2 years ago
- Plugins for the Viper Framework☆14Updated 5 years ago
- Miscellaneous Scripts☆17Updated 4 years ago
- Tool for analysis of Windows Prefetch files☆26Updated 6 years ago
- ☆13Updated 4 years ago
- ConventionEngine - A Yara Rulepack for PDB Path Hunting☆37Updated last year
- Handy scripts to speed up malware analysis☆35Updated last year
- Generates YARA rules to detect malware using API hashing☆17Updated 3 years ago
- Generate YARA rules for OOXML documents.☆37Updated last year
- A tool to help malware analysts signature unique parts of RTF documents☆29Updated 2 weeks ago
- NTFS file system specimens☆14Updated last year
- ☆23Updated 9 months ago
- A library and cli tool to extract HWP files.☆19Updated last month
- TA505 unpacker Python 2.7☆47Updated 4 years ago
- Scripts and tools created for appx analysis talk (Magnet summit 2019)☆15Updated 10 months ago
- Python emulator for Excel XLM macros.☆18Updated 4 years ago
- Set of utilities for getting information about Windows Events☆15Updated 6 years ago
- Presentation materials for talks I've given.☆20Updated 5 years ago
- Trace ScriptBlock execution for powershell v2☆39Updated 5 years ago
- This repository regroups the Yara Rules for the Unprotect Project☆24Updated 4 years ago
- Scripts, Yara rules and other files developed during malware investigations☆25Updated 2 years ago
- Simple tool to extract icons from a pe file and other useful information☆11Updated 6 years ago
- A collection of threat intelligence data such as IOC, Yara and Snort/Suricata Rules etc.☆10Updated 5 years ago
- Scans through registry hives outputting entropy values for key/values, dumps binary contents to files...we are looking for those "fileles…☆11Updated 6 years ago
- Royal APT - APT15 - Related Information from NCC Group Cyber Defense Operations Research☆53Updated 6 years ago
- ☆34Updated 2 years ago
- A Maltego transform for VirusTotal vHash☆31Updated 5 years ago
- ☆23Updated 4 years ago