flare-vm
commando-vm
flare-vm | commando-vm | |
---|---|---|
23 | 9 | |
5,856 | 6,693 | |
1.5% | 1.3% | |
8.0 | 4.3 | |
9 days ago | 17 days ago | |
PowerShell | PowerShell | |
Apache License 2.0 | Apache License 2.0 |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
flare-vm
-
Looking for x86 Assembly learning material
Follow the instructions here to setup a FLARE vm which will have all the tools you need for the labs in the book flare vm
-
Small company, small analysis Platform
FLARE VM: this is a boxstarter from Mandiant to add a bunch of tools to Windows for malware analysis
-
Home lab for cybersecurity
build it as a proxmox host and have a malware analysis VM (flare-vm for example - https://github.com/mandiant/flare-vm) you can then interact with it via Console or host another VM as an SSH jump box and ssh tunnel to port 3389 on the malware vm
- Ma poate ajuta cineva ? Am descărcat ceva de pe filelist si după am întâmpinat asta.
- Any sandbox app (Windows or Linux) that supports network routing?
-
OS Recommendations for DFIR
FLARE VM: a Windows toolkit for malware analysis from Mandiant: https://github.com/mandiant/flare-vm
-
L1 analysts, do you do malware analysis? If so how often?
I usually run it in virtualbox without guest additions, get one of those free windows 10 isos from microsoft and install the mandiant flare vm on it ( https://github.com/mandiant/flare-vm ), after everything is installed i keep a snapshot of the windows machine with everything set up so i dont have to do it all again and once its done i set the network to internal and set set up inetsim on remnux as well if im going to do dynamic analysis so that i have an internet simulator that the malware can talk to.
-
How do you setup a malware analysis sandbox?
I use https://any.run for quick stuff or just fire my FlareVM up.
- Any distro for forensic blue team?
- How to set up a laptop as a dedicated mal-lab that has access to my home network for malware to send and receive traffic but cannot propagate to the rest of my devices?
commando-vm
-
Create Gold Image from Custom Windows VM
I have a customised version of Windows 10 (https://github.com/mandiant/commando-vm) that I want to be able to install as a base image onto new hard drives.
- Virtual Machine Setup for Training
-
Security VMs
For a windows based vm I can recommend using commando-vm. https://github.com/mandiant/commando-vm
- This is a college penetration course that uses "Windows Programs" - but my professor is valid.
-
Issues installing Kali on USB
I highly recommend that you look into Commando VM.
-
Own pentesting os?
Meanwhile, Fireeye - a 4 Billion US Dollar Cyber Security Company - developed & maintains Commando VM.
-
Auto-setup my Kali Linux install?
I downloaded and messed around with Mandiant's Commando and I thought it was cool how you basically just ran the ps script and it installed and setup everything.
-
Working on Linux in virtual machine seems too slow. Why do people use it?
If you wanna use windows for hacking, install this - https://github.com/mandiant/commando-vm, closest thing to a kali linux equiv in windows - Dont use the commando vm with any private data. Its important to isolate your personal computer usage and ethical hacking usage. You could also get hackthebox premium to get your own 24/7 PwnBox which will give you your own virtualised hacking platform for the time being.
What are some alternatives?
drakvuf-sandbox - DRAKVUF Sandbox - automated hypervisor-level malware analysis system
Penetration-Testing-Tools - A collection of more than 170+ tools, scripts, cheatsheets and other loots that I've developed over years for Red Teaming/Pentesting/IT Security audits purposes.
radare2 - UNIX-like reverse engineering framework and command-line toolset
clevelandsteamer - Un-sh*t your Windows install
flare-fakenet-ng - FakeNet-NG - Next Generation Dynamic Network Analysis Tool
cloudinit - Official upstream for the cloud-init: cloud instance initialization
Binance-APK-Analysis - Revealing secrets behind Binance Crypto Exchange platform through Android APK Analysis
optimized-azerty-win - AFNOR Compliant AZERTY Keyboard Layout driver for Windows
pwndbg - Exploit Development and Reverse Engineering with GDB Made Easy
packer-plugin-windows-update - Packer plugin for installing Windows updates
simplify - Android virtual machine and deobfuscator
JoplinPortable - Joplin for PortableApps.com