muninn by ytisf

A short and small memory forensics helper.

updated at May 4, 2024, 12:45 a.m.

Python

11 +0

51 +0

9 +0

GitHub
python-dshield by rshipp

Pythonic interface to the Internet Storm Center / DShield API.

updated at April 30, 2024, 8:17 p.m.

Python

4 +0

23 +0

13 +0

GitHub
fsf by EmersonElectricCo

File Scanning Framework

updated at April 26, 2024, 10:29 p.m.

Python

35 +0

282 +0

49 +0

GitHub
AnalyzePDF by hiddenillusion

Tool to help analyze PDF files

updated at April 24, 2024, 8:36 p.m.

Python

22 +0

170 +0

40 +0

GitHub
sandboxapi by InQuest

Minimal, consistent Python API for building integrations with malware sandboxes.

updated at April 24, 2024, 6:58 p.m.

Python

21 +0

131 +0

39 +0

GitHub
MaltegoVT by michael-yip

A set of Maltego transforms for VirusTotal Public API v2.0. This set has the added functionality of caching queries on a daily basis to speed up resolutions.

updated at April 24, 2024, 5:25 p.m.

Python

8 +0

76 +0

22 +0

GitHub
Hale by pjlantz

Botnet command & control monitor

updated at April 16, 2024, 7:42 p.m.

Python

17 +0

183 +0

63 +0

GitHub
ioc_writer by mandiant

None

updated at April 14, 2024, 7:25 p.m.

Python

40 +0

199 +0

60 +0

GitHub
IPinfo by hiddenillusion

Searches various online resources to try and get as much info about an IP/domain as possible.

updated at April 14, 2024, 2:38 a.m.

Python

19 +0

95 +0

28 +0

GitHub
AnalyzePE by hiddenillusion

Wraps around various tools and provides some additional checks/information to produce a centralized report of a PE file.

updated at April 12, 2024, 11:52 p.m.

Python

19 +0

201 +0

37 +0

GitHub
Ragpicker by robbyFux

Ragpicker is a Plugin based malware crawler with pre-analysis and reporting functionalities. Use this tool if you are testing antivirus products, collecting malware for another analyzer/zoo.

updated at April 12, 2024, 8:54 a.m.

Python

15 +0

90 +0

25 +0

GitHub
hpfeeds by hpfeeds

Honeynet Project generic authenticated datafeed protocol

updated at April 8, 2024, 2:49 a.m.

Python

30 +0

208 +0

110 +0

GitHub
jsunpack-n by urule99

Automatically exported from code.google.com/p/jsunpack-n

updated at April 3, 2024, 2:49 p.m.

Python

16 +0

157 +0

65 +0

GitHub
CryptoKnight by AbertayMachineLearningGroup

Cryptographic Dataset Generation & Modelling Framework

updated at April 2, 2024, 6:43 a.m.

Python

6 +0

38 +0

12 +0

GitHub
packerid by sooshie

None

updated at March 27, 2024, 10:19 a.m.

Python

5 +0

40 +0

9 +0

GitHub
httpreplay by hatching

Replay HTTP and HTTPS requests from a PCAP based on TLS Master Secrets.

updated at March 26, 2024, 7:46 p.m.

Python

13 +0

94 +0

33 +0

GitHub
sflock by hatching

Sample staging & detonation utility to be used in combination with Cuckoo Sandbox.

updated at March 26, 2024, 7:45 p.m.

Python

12 +0

81 +0

48 +0

GitHub
DAMM by 504ensicsLabs

Differential Analysis of Malware in Memory

updated at March 26, 2024, 4:23 p.m.

Python

31 +0

209 +0

56 +0

GitHub
VolDiff by aim4r

VolDiff: Malware Memory Footprint Analysis based on Volatility

updated at March 26, 2024, 6:38 a.m.

Python

28 +0

192 +0

50 +0

GitHub
mnemosyne by johnnykv

Normalizer for honeypot data.

updated at March 26, 2024, 2:39 a.m.

Python

8 +0

44 +0

41 +0

GitHub