MANDIANT (mandiant)

MANDIANT

mandiant

Geek Repo

Home Page:http://www.mandiant.com

Github PK Tool:Github PK Tool

MANDIANT's repositories

commando-vm

Complete Mandiant Offensive VM (Commando VM), a fully customizable Windows-based pentesting virtual machine distribution. commandovm@mandiant.com

Language:PowerShellLicense:Apache-2.0Stargazers:6805Issues:286Issues:232

flare-vm

A collection of software installations scripts for Windows systems that allows you to easily setup and maintain a reverse engineering environment on a VM.

Language:PowerShellLicense:Apache-2.0Stargazers:6165Issues:202Issues:501

capa

The FLARE team's open-source tool to identify capabilities in executable files.

Language:PythonLicense:Apache-2.0Stargazers:4011Issues:82Issues:888

flare-floss

FLARE Obfuscated String Solver - Automatically extract obfuscated strings from malware.

Language:PythonLicense:Apache-2.0Stargazers:3119Issues:132Issues:476

flare-ida

IDA Pro utilities from FLARE team

Language:PythonLicense:Apache-2.0Stargazers:2154Issues:152Issues:56

flare-fakenet-ng

FakeNet-NG - Next Generation Dynamic Network Analysis Tool

Language:PythonLicense:Apache-2.0Stargazers:1735Issues:112Issues:99

speakeasy

Windows kernel and user mode emulation.

Language:PythonLicense:MITStargazers:1430Issues:56Issues:74

gocrack

GoCrack is a management frontend for password cracking tools written in Go

Language:GoLicense:MITStargazers:1112Issues:56Issues:44

Ghidrathon

The FLARE team's open-source extension to add Python 3 scripting to Ghidra.

Language:JavaLicense:Apache-2.0Stargazers:673Issues:9Issues:66

stringsifter

A machine learning tool that ranks strings based on their relevance for malware analysis.

Language:PythonLicense:Apache-2.0Stargazers:666Issues:29Issues:19

capa-rules

Standard collection of rules for capa: the tool for enumerating the capabilities of programs

Language:PythonLicense:GPL-3.0Stargazers:503Issues:37Issues:3

GoReSym

Go symbol recovery tool

Language:GoLicense:MITStargazers:499Issues:12Issues:33
Language:PythonLicense:Apache-2.0Stargazers:358Issues:19Issues:5
Language:PythonLicense:Apache-2.0Stargazers:339Issues:10Issues:7

STrace

A DTrace on Windows Reimplementation

Language:C++License:MITStargazers:311Issues:14Issues:11

GeoLogonalyzer

GeoLogonalyzer is a utility to analyze remote access logs for anomalies such as travel feasibility and data center sources.

Language:PythonLicense:Apache-2.0Stargazers:195Issues:28Issues:8
Language:PythonLicense:Apache-2.0Stargazers:166Issues:2Issues:0

dncil

The FLARE team's open-source library to disassemble Common Intermediate Language (CIL) instructions.

Language:PythonLicense:Apache-2.0Stargazers:134Issues:9Issues:11

VM-Packages

Chocolatey packages supporting the analysis environment projects FLARE-VM & Commando VM.

Language:PowerShellLicense:Apache-2.0Stargazers:129Issues:11Issues:447

gocrack-ui

The User Interface for GoCrack

Language:VueLicense:MITStargazers:84Issues:8Issues:1

gootloader

Collection of scripts used to deobfuscate GOOTLOADER malware samples.

Language:PythonLicense:Apache-2.0Stargazers:50Issues:9Issues:2

capa-testfiles

Data to test capa's code and rules.

Language:MaxLicense:Apache-2.0Stargazers:35Issues:7Issues:0

gocat

Provides access to libhashcat

Language:GoLicense:MITStargazers:30Issues:7Issues:3

flare-gsoc-2024

Supporting resources and documentation for FLARE @ Google Summer of Code 2024

License:Apache-2.0Stargazers:14Issues:7Issues:0

flare-floss-testfiles

Resources for testing FLOSS by the FLARE team.

Language:CStargazers:6Issues:5Issues:0