APTnotes
awesome-malware-analysis
Our great sponsors
APTnotes | awesome-malware-analysis | |
---|---|---|
5 | 8 | |
3,405 | 11,026 | |
- | - | |
3.1 | 0.0 | |
4 months ago | 4 days ago | |
- | GNU General Public License v3.0 or later |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
APTnotes
-
Ask HN: What Happened with the Grugq Article?
>with case studies and getting as niche on specific things as possible.
Then definitely you can touch on APT marketplace, unlike the usual zeroday ones, those are -as the name implies, advanced, and mostly are state sponsored, you can find some of these in this sheet [1], or other sources [2] or older ones [3]. Now, for other zero day exploits, you can dig into your typical threat intelligence feeds to have an idea, some of these are daily updated [4] [5] [6] among a lot more of other resources, there are also underground databases for zero day and even APT updated as of yesterday, and also online marketplaces for those where you can buy/sell compromised RDP servers / webmail / cPanels / etc., or even services like smtp-sms for phishing among others, unfortunately, I can’t and won’t list any of these in here for obvious reasons, however, if you dig a little deeper definitely you will find something, just don’t use the usual search engines and normal channels, and get the usual security precautions like sandbox/vpns/etc. when access any of these sites, preferably in an isolated OS too.
And thanks, not expert enough for sure!
[1] https://docs.google.com/spreadsheets/u/1/d/1H9_xaxQHpWaa4O_S...
[2] https://gist.github.com/Neo23x0/c4f40629342769ad0a8f3980942e...
[3] https://github.com/kbandla/APTnotes
[4] https://bazaar.abuse.ch/browse/
-
Seeking Datasets on Malware
I trained up this repo in my privateGPT - https://github.com/kbandla/APTnotes
- Le Burkina Faso
-
Cybersecurity Repositories
APT Notes
- Les ressortissants russes en France reçoivent en ce moment sur leurs numéros de téléphone russe des demandes pour l'enrôlement dans l'armée en vue de la guerre avec l'Ukraine
awesome-malware-analysis
- Windows found a trojan called "ravadon.e". Is this a false alarm or what? I can't find anything about it offline except a site that just copy and pastes the trojan name into it's text.
-
Cybersecurity Repositories
Malware Analysis
-
Understanding cuckoo sandbox json report
The JSON simply contains a summary of artefacts and behavior indicators that had been recorded while your malware sample detonated. Don't get me wrong - but you maybe want to take a step back and check out some of the basics. This page provides a ton of resources for any skill level: https://github.com/rshipp/awesome-malware-analysis
-
Is clamav still regarded as the best virus scanning software on Linux?
https://github.com/rshipp/awesome-malware-analysis *
-
awesome-malware-analysis VS awesome-executable-packing - a user suggested alternative
2 projects | 15 Dec 2021
- Recommended ways to learn malware field of information security? comprehensive guide? not just how to start for a beginner? (although I'm a beginner)
-
The Hitchhiker’s Guide to Online Anonymity (new draft version v0.7.8)
Added reference to https://github.com/rshipp/awesome-malware-analysis in the Malware analysis appendix
-
Malware Sample for beginners
Collection of Tools and Resources - https://github.com/rshipp/awesome-malware-analysis
What are some alternatives?
data - APTnotes data
awesome-frida - Awesome Frida - A curated list of Frida resources http://www.frida.re/ (https://github.com/frida/frida)
ThreatHunter-Playbook - A community-driven, open-source project to share detection logic, adversary tradecraft and resources to make detection development more efficient.
malware-samples - A collection of malware samples caught by several honeypots i manage
osx-and-ios-security-awesome - OSX and iOS related security tools
MISP - MISP (core software) - Open Source Threat Intelligence and Sharing Platform
awesome-forensics - A curated list of awesome forensic analysis tools and resources
theZoo - A repository of LIVE malwares for your own joy and pleasure. theZoo is a project created to make the possibility of malware analysis open and available to the public.
awesome-iocs - A collection of sources of indicators of compromise.
awesome-yara - A curated list of awesome YARA rules, tools, and people.
awesome-adversarial-machine-learning - A curated list of awesome adversarial machine learning resources
HiddenVM - HiddenVM — Use any desktop OS without leaving a trace.