
cyberbro
A simple application that extracts your IoCs from garbage input and checks their reputation using multiple CTI services.

A simple application that extracts your IoCs from garbage input and checks their reputation using multiple CTI services.

🐍 High-performance, multi-threaded YARA & IOC scanner

Live memory analysis detecting malware IOCs in processes, modules, handles, tokens, threads, .NET assemblies, memory address space and environment…

Walk any memory dump. Find what's hidden. Linux + Windows kernel forensics from a single static Rust binary — no Python required.

Apache ActiveMQ (CVE-2023-46604) zafiyetinden LockBit ransomware aşamasına uzanan 419 saatlik sızma vakasının uçtan uca analizi, SIEM korelasyon…

🔬 Jupyter notebook to help automate some of the forensic analysis related to Citrix Netscalers compromised via CVE-2019-19781

Cortex: a Powerful Observable Analysis and Active Response Engine

A DFIR tool to extract cryptocoin addresses and other indicators of compromise from binaries.

Curated collection of detection rules and IOCs extracted from DFIR engagements and malware analyses to support threat hunting, incident response, and…

A python script that can detect and parse loki-bot (malware) related network traffic. This script can be helpful to DFIR analysts and security…

Spring4Shell (CVE-2022-22965) DFIR lab with exploit simulation, Python WAF, IOC-based detection, and PCAP analysis.

My Citrix ADC NetScaler CVE-2019-19781 Vulnerability DFIR notes.

A curated knowledge base to build, run and mature a SOC (including CSIRT).