Stars
Your Swiss Army knife to analyze malicious web traffic based on mitmproxy.
R3D SSH Hunter: The Ultimate SSH Key and Bad Guy Tracker
Public Repository of Open Source Tools for Cyber Threat Intelligence Analysts and Researchers
Free hands-on digital forensics labs for students and faculty
Command line tool to download and extract data from HTML/XML pages or JSON-APIs, using CSS, XPath 3.0, XQuery 3.0, JSONiq or pattern matching. It can also create new or transformed XML/HTML/JSON do…
A PowerShell script that attempts to help malware analysts hide their VMware Windows VM's from malware that may be trying to evade analysis.
Volatility 3 plugins to extract a module as complete as possible
A python app to predict Att&ck tactics and techniques from cyber threat reports
Prowler is the world’s most widely used open-source cloud security platform that automates security and compliance across any cloud environment.
Cloudsplaining is an AWS IAM Security Assessment tool that identifies violations of least privilege and generates a risk-prioritized report.
IAM Least Privilege Policy Generator
IoCs and YARA rules for Industroyer2
A tool designed to hunt for Phishing Kit source code
Cyber-Threat-Intel / BlueRooster
Forked from aleprada/ioc_tweetsScript for gathering IoCs from Twitter and sending them to MISP.
Port of the binary diffing library, diaphora, for radare2 and mariadb
Automate the creation of a lab environment complete with security tooling and logging best practices
Scans all running processes. Recognizes and dumps a variety of potentially malicious implants (replaced/implanted PEs, shellcodes, hooks, in-memory patches).
LiME (formerly DMD) is a Loadable Kernel Module (LKM), which allows the acquisition of volatile memory from Linux and Linux-based devices, such as those powered by Android. The tool supports acquir…
DRAKVUF Sandbox - automated hypervisor-level malware analysis system
A collection of YARA rules we wish to share with the world, most probably referenced from http://blog.inquest.net.
Bringing you the best of the worst files on the Internet.
A repository of LIVE malwares for your own joy and pleasure. theZoo is a project created to make the possibility of malware analysis open and available to the public.