ShellcodeLoader – Small tool to load shellcode or PEs to analyze them.
ShellcodeLoader has been built with the purpose to quickly debug a shellcode extracted in malware analysis in a context of an executable. What ShelcodeLoader does is read a bynary file from disk to...
View ArticleMLRD – Machine Learning Ransomware Detection.
MLRD is a machine learning based malware analyser written in Python 3 that can be used to detect ransomware. Features: + Analyses and Extracts features from PE file headers to determine if a file is...
View ArticleMalPipe – Malware/IOC ingestion and processing engine.
MalPipe is a modular malware (and indicator) collection and processing framework. It is designed to pull malware, domains, URLs and IP addresses from multiple feeds, enrich the collected data and...
View ArticleTIH – Threat Intelligence Hunter framework.
TIH is an intelligence tool that helps you in searching for IOCs across multiple openly available security feeds and some well known APIs. The idea behind the tool is to facilitate searching and...
View Articlenettfiske – Detect Phishing fetching Certificate Transparency Logs.
Nettfiske a tool Uses certstream SSL certificates live stream to identify possible phishing domain names. Use Cases Attempt to detect the use of Punycode and Homoglyph Attacks to obfuscate Domains. The...
View Articlehollows_hunter – A process scanner detecting and dump hollowed PE modules.
hollows_hunter is a process scanner detecting and dumping hollowed PE modules. it Uses PE-sieve (DLL version): PE-sieve is n open source tool based on libpeconv. It scans a given process, searching for...
View ArticleMalwLess Simulator Tool (MST).
MalwLess is a open source tool developed in C# for blue teams that allows you to test your SIEM and security systems. Basically you can simulate the behaviour of a malicious attack or system compromise...
View Articlesniff-probe-req : Wifi Probe Requests Sniffer.
sniff-probe-req is a software allows you to sniff the Wi-Fi probe requests passing near your wireless interface. Probe requests are sent by a station to elicit information about access points, in...
View Articlerastrea2r – Collecting & Hunting for IOC with gusto and style.
Description Ever wanted to turn your AV console into an Incident Response & Threat Hunting machine? Rastrea2r (pronounced “rastreador” – hunter- in Spanish) is a multi-platform open source tool...
View Articleids_bypass – Intrussion Detection System Bypass tricks.
Disclaimer: These programs is for Educational purpose ONLY. Do not use it without permission. * inject_server: Proof-Of-Concept for CVE-2018-6794. If as a server side you break a normal TCP 3 way...
View Articleomnibus – The Osint Omnibus.
Omnibus An Omnibus is defined as a volume containing several novels or other items previously published separately and that is exactly what the InQuest Omnibus project intends to be for Open Source...
View ArticleGpredict is satellite tracking and prediction application.
Gpredict is a real time satellite tracking and orbit prediction program for the Linux desktop. It uses the SGP4/SDP4 propagation algorithms together with NORAD two-line element sets (TLE). Some core...
View Article