tylabs / quicksandLinks
QuickSand document and PDF malware analysis tool written in Python
☆136Updated 3 months ago
Alternatives and similar repositories for quicksand
Users that are interested in quicksand are comparing it to the libraries listed below
Sorting:
- YARA rule metadata specification and validation utility / Spécification et validation pour les règles YARA☆114Updated 3 weeks ago
- This repository contains analysis scripts, YARA rules, and additional IoCs related to our Telekom Security blog posts.☆119Updated 2 years ago
- File analysis and management framework.☆92Updated 2 years ago
- Rules Shared by the Community from 100 Days of YARA 2023☆78Updated 2 years ago
- JPCERT/CC public YARA rules repository☆110Updated 2 months ago
- A toolkit for the post-mortem examination of Docker containers from forensic HDD copies☆107Updated last year
- The Windows Malware Analysis Reversing Core Tools☆97Updated 5 years ago
- Collection of rules created using YARA-Signator over Malpedia☆143Updated 3 weeks ago
- YARA rule analyzer to improve rule quality and performance☆109Updated 2 weeks ago
- Further investigation in to APT campaigns disclosed by private security firms and security agencies☆87Updated 3 years ago
- SubCrawl is a modular framework for discovering open directories, identifying unique content through signatures and organizing the data w…☆150Updated 2 years ago
- ☆152Updated 3 months ago
- Visually inspect and force decode YARA and regex matches found in both binary and text data with colors. Lots of colors.☆144Updated this week
- A guide on how to write fast and memory friendly YARA rules☆163Updated 11 months ago
- IOCs published by Black Lotus Labs☆124Updated 3 months ago
- acquire is a tool to quickly gather forensic artifacts from disk images or a live system into a lightweight container.☆116Updated 2 weeks ago
- ☆129Updated 2 years ago
- A YARA rules repository continuously updated for monitoring the old and new threats from articles, incidents responses ...☆141Updated 2 years ago
- ATT&CK Powered Suit is a browser extension that puts the complete MITRE ATT&CK® knowledge base at your fingertips with text search, conte…☆82Updated 7 months ago
- Hatching Triage public command-line utility and API library.☆74Updated 2 years ago
- Detection Engineering with YARA☆86Updated 2 years ago
- ☆78Updated 4 months ago
- This repo is a collection of Ransomware reports from vendors, researchers, etc.☆121Updated 3 years ago
- ☆227Updated 3 years ago
- ☆96Updated 8 months ago
- Base components for Assemblyline 4 (Datastore, ODM, Filestore, Remote Datatypes, utils function, etc...)☆70Updated this week
- ☆19Updated 3 years ago
- Digital Forensics Artifacts Knowledge Base☆89Updated last month
- A python script developed to process Windows memory images based on triage type.☆263Updated 2 years ago
- CyberChef - Detection Engineering, TI, DFIR, Malware Analysis Edition☆66Updated 3 years ago