tylabs / quicksandLinks
QuickSand document and PDF malware analysis tool written in Python
☆137Updated 3 months ago
Alternatives and similar repositories for quicksand
Users that are interested in quicksand are comparing it to the libraries listed below
Sorting:
- File analysis and management framework.☆92Updated 2 years ago
- YARA rule metadata specification and validation utility / Spécification et validation pour les règles YARA☆115Updated last month
- ☆96Updated 9 months ago
- SubCrawl is a modular framework for discovering open directories, identifying unique content through signatures and organizing the data w…☆150Updated 2 years ago
- acquire is a tool to quickly gather forensic artifacts from disk images or a live system into a lightweight container.☆117Updated 3 weeks ago
- This repository contains analysis scripts, YARA rules, and additional IoCs related to our Telekom Security blog posts.☆119Updated 2 years ago
- Further investigation in to APT campaigns disclosed by private security firms and security agencies☆87Updated 3 years ago
- Rules Shared by the Community from 100 Days of YARA 2023☆78Updated 2 years ago
- IOCs published by Black Lotus Labs☆125Updated 3 months ago
- JPCERT/CC public YARA rules repository☆110Updated 2 months ago
- Base components for Assemblyline 4 (Datastore, ODM, Filestore, Remote Datatypes, utils function, etc...)☆71Updated this week
- ☆152Updated 3 months ago
- ATT&CK Powered Suit is a browser extension that puts the complete MITRE ATT&CK® knowledge base at your fingertips with text search, conte…☆82Updated 8 months ago
- ☆19Updated 3 years ago
- Arya is a unique tool that produces pseudo-malicious files meant to trigger YARA rules. You can think of it like a reverse YARA.☆259Updated 3 years ago
- ☆129Updated 2 years ago
- A YARA rules repository continuously updated for monitoring the old and new threats from articles, incidents responses ...☆141Updated 2 years ago
- A guide on how to write fast and memory friendly YARA rules☆164Updated last year
- BlackBerry Threat Research & Intelligence☆100Updated 2 years ago
- YARA rule analyzer to improve rule quality and performance☆111Updated 3 weeks ago
- ☆78Updated 4 months ago
- A toolkit for the post-mortem examination of Docker containers from forensic HDD copies☆108Updated last year
- TAPIR is a multi-user, client/server, incident response framework☆47Updated 3 years ago
- Collection of rules created using YARA-Signator over Malpedia☆142Updated last month
- Detection Engineering with YARA☆87Updated 2 years ago
- ☆227Updated 3 years ago
- CyberChef - Detection Engineering, TI, DFIR, Malware Analysis Edition☆66Updated 3 years ago
- This repo is a collection of Ransomware reports from vendors, researchers, etc.☆121Updated 3 years ago
- Hatching Triage public command-line utility and API library.☆74Updated 2 years ago
- Python API for interacting with sigma rules.☆54Updated 3 years ago