Marius's repositories
atomic-red-team
Small and highly portable detection tests based on MITRE's ATT&CK.
Autopsy-Plugins
Autopsy Python Plugins
azure-docs
Open source documentation of Microsoft Azure
CobaltStrikeScan
Scan files or process memory for CobaltStrike beacons and parse their configuration
crits_services
CRITs Services Collection
docker
OpenCTI Docker deployment helpers
evtx-hunter
evtx-hunter helps to quickly spot interesting security-related activity in Windows Event Viewer (EVTX) files.
INDXParse
Tool suite for inspecting NTFS artifacts.
invoke-atomicredteam
Invoke-AtomicRedTeam is a PowerShell module to execute tests as defined in the [atomics folder](https://github.com/redcanaryco/atomic-red-team/tree/master/atomics) of Red Canary's Atomic Red Team project.
Loki
Loki - Simple IOC and Incident Response Scanner
mal_unpack
Dynamic unpacker based on PE-sieve
Malware-Feed
Bringing you the best of the worst files on the Internet.
malware-sample-library
Malware sample library.
Malware-Sample-Sources
Malware Sample Sources
malware-samples
A collection of malware samples and relevant dissection information, most probably referenced from http://blog.inquest.net
MISP
MISP (core software) - Open Source Threat Intelligence and Sharing Platform (formely known as Malware Information Sharing Platform)
misp-modules
Modules for expansion services, import and export in MISP
opencti
Open Cyber Threat Intelligence Platform
PoC
Proofs-of-concept
Psychson
Phison 2251-03 (2303) Custom Firmware & Existing Firmware Patches (BadUSB)
RdpCacheStitcher
RdpCacheStitcher is a tool that supports forensic analysts in reconstructing useful images out of RDP cache bitmaps.
Skadi
Collect, Process, and Hunt with host based data from MacOS, Windows, and Linux
surveyor
A simple survey tool for Cb Response and Cb Threat Hunter.
velociraptor
Digging Deeper....
webshell
This is a webshell open source project
werejugo
Identifies physical locations where a laptop has been based upon wireless profiles and wireless data recorded in event logs
Yara-rules
Collection of private Yara rules.