Limon is a sandbox developed as a research project written in python, which automatically collects, analyzes, and reports on the run time indicators of Linux malware. It allows one to inspect Linux malware before execution, during execution, and after execution (post-mortem analysis) by performing static, dynamic and memory analysis using open source tools
created at Nov. 21, 2015, 8:37 a.m.
Machinae Security Intelligence Collector
created at July 6, 2015, 3:14 p.m.
ngrep is like GNU grep applied to the network layer. It's a PCAP-based tool that allows you to specify an extended regular or hexadecimal expression to match against data payloads of packets. It understands many kinds of protocols, including IPv4/6, TCP, UDP, ICMPv4/6, IGMP and Raw, across a wide variety of interface types, and understands BPF filter logic in the same fashion as more common packet sniffing tools, such as tcpdump and snoop.
created at Dec. 30, 2009, 8:14 a.m.
Robust ABC (ActionScript Bytecode) [Dis-]Assembler
created at May 5, 2010, 7:23 a.m.
Defanged Indicator of Compromise (IOC) Extractor.
created at April 17, 2018, 5:37 p.m.
Linker/Compiler/Tool detector for Windows, Linux and MacOS.
created at Nov. 29, 2018, 2:28 p.m.
A Python RESTful API framework for online malware analysis and threat intelligence services.
created at Feb. 27, 2015, 10:43 p.m.