threatcat-ch / malware-analysis-pipeline
Lightweight Python-Based Malware Analysis Pipeline
☆34Updated 2 weeks ago
Alternatives and similar repositories for malware-analysis-pipeline:
Users that are interested in malware-analysis-pipeline are comparing it to the libraries listed below
- The core backend server handling API requests and task management☆38Updated 2 weeks ago
- SkillAegis is a platform to design, run, and monitor exercise scenarios, enhancing skills in applications like MISP and training users in…☆26Updated this week
- CyberChef - Detection Engineering, TI, DFIR, Malware Analysis Edition☆63Updated 2 years ago
- A home for detection content developed by the delivr.to team☆68Updated 2 months ago
- Linux #rootkit and #malware revealer☆24Updated 8 months ago
- Convert Sigma rules to SIEM queries, directly in your browser.☆74Updated this week
- A zero dependency and customizable Python library for scanning Windows and Linux process memory.☆66Updated last year
- BlackBerry Threat Research & Intelligence☆98Updated last year
- Factual-rules-generator is an open source project which aims to generate YARA rules about installed software from a machine.☆76Updated 3 years ago
- SubCrawl is a modular framework for discovering open directories, identifying unique content through signatures and organizing the data w…☆51Updated 4 months ago
- ShellSweeping the evil.☆52Updated 10 months ago
- ☆32Updated this week
- Summiting the Pyramid is a research project focused on engineering cyber analytics to make adversary evasion more difficult. The research…☆37Updated last month
- ☆87Updated 2 months ago
- Track progress and keep notes while working through likethecoins' CTI Self Study Plan☆28Updated 2 years ago
- Repository that contains a set of purposefully erroneous Yara rules.☆51Updated last year
- Accelerating the collection, processing, analysis and outputting of digital forensic artefacts.☆31Updated 2 months ago
- Can you pay the ransom in your country?☆14Updated last year
- CarbonBlack EDR detection rules and response actions☆71Updated 7 months ago
- Automatically spider the result set of a Censys/Shodan search and download all files where the file name or folder path matches a regex.☆27Updated 2 years ago
- Pythia is a versatile query format designed to facilitate the discovery of malicious infrastructure by seamlessly converting into the syn…☆32Updated 8 months ago
- FJTA (Forensic Journal Timeline Analyzer) is a tool that analyzes Linux filesystem (EXT4, XFS) journals (not systemd-journald), generates…☆63Updated 3 weeks ago
- A new Cyber Threat Intelligence Capability Maturity Model (CTI-CMM) to empower your team and create lasting value. Inspired by Industry N…☆28Updated this week
- MasterParser is a simple, all-in-one, digital forensics artifact parser☆22Updated 3 years ago
- 100 Days of YARA to be updated with rules & ideas as the year progresses☆60Updated 2 years ago
- A collection of tips for using MISP.☆74Updated 4 months ago
- orc2timeline extracts and analyzes artifacts contained in archives generated with DFIR-ORC.exe to create a timeline from them☆33Updated 5 months ago
- a common schema for internet-connected service discovery 🔎 📚☆19Updated last year
- An experimental script to perform bulk parsing of arbitrary file features with YARA and console logging.☆21Updated 2 years ago
- Get started using Synapse Open-Source to start a Cortex and perform analysis within your area of expertise.☆42Updated 2 years ago