A curated list of awesome malware analysis tools and resources.
-
Updated
Nov 5, 2019 - 622 commits
A curated list of awesome malware analysis tools and resources.
An authoritative list of awesome devsecops tools with the help from community experiments and contributions.
Phishing catcher using Certstream
Malcom - Malware Communications Analyzer
Open Cyber Threat Intelligence Platform
The Correlated CVE Vulnerability And Threat Intelligence Database API
proxycheck.io is very convenient service for detecting proxies with sane updated database. it has some interesting fields in its responses (see below)
without API key everyone gets 100 queries per day:
curl -s 'http://proxycheck.io/v2/37.60.48.2?risk=1&vpn=1&seen=1&port=1' | jq
{
"status": "ok",
"37.60.48.2": {
"proxy": "yes",
"type": "VPAdvanced Sysmon configuration, Installer & Auto Updater with high-quality event tracing
The GOSINT framework is a project used for collecting, processing, and exporting high quality indicators of compromise (IOCs).
Hi
i am using docker-compose in windows 7
postgres,rabbitmq and django application services build,but nginx service has an error!
nginx:
volumes:
- ./nginx_docker.conf:/etc/nginx/conf.d/default.conf
in this part "nginx_docker.conf" is not a directory and i have error "not a directory" in running "docker-compose up" command.
what is your solution for my problem?
A browser extension for OSINT search
The OSINT Omnibus (beta release)
Defanged Indicator of Compromise (IOC) Extractor.
本项目致力于收集网上公开来源的威胁情报,主要关注信誉类威胁情报(如IP/域名等),以及事件类威胁情报。
Extract and aggregate threat intelligence.
Sandia Cyber Omni Tracker (SCOT)
Personal compilation of APT malware from whitepaper releases, documents and own research
Clusters and elements to attach to MISP events or attributes (like threat actors)
Don't Just Search OSINT. Sweep It.
Find phishing kits which use your brand/organization's files and image.
Archive of publicly available threat INTel reports (mostly APT Reports but not limited to).
Modules for expansion services, import and export in MISP
StalkPhish - The Phishing kits stalker, harvesting phishing kits for investigations.
Warning lists to inform users of MISP about potential false-positives or other information in indicators
Domain name permutation engine written in Go
Hello everyone!
I have a few doubts on how events are handled across misp instances and Orgs. As I still haven't complete domain of the code and my curiosity is killing me, I'm coming here to ask help =]
Wil