
cowrie
Cowrie SSH/Telnet Honeypot https://docs.cowrie.org/

Cowrie SSH/Telnet Honeypot https://docs.cowrie.org/

Online hash checker for Virustotal and other services

Assortment of hashing algorithms used in malware

Advanced Static malware analyzer that reveals 8 injection techniques, critical API calls, hidden strings, exports PE sections (.text, .rdata) as…

Static binary analysis with Detect It Easy — 100% in your browser, no uploads.

A Binary Genetic Traits Lexer Framework

HashDB API hash lookup plugin for IDA Pro

Java library to analyse Portable Executable files with a special focus on malware analysis and PE malformation robustness

A tool to support the reporting of Authenticode Certificates by reducing the effort on individuals to report.

Python library for parsing CLR/PE metadata in .NET assemblies, exposing streams and hash fingerprints to support malware analysis and threat hunting.

Recursively scan folders with VirusTotal API to detect malware. Features hash lookup, CSV export, real-time progress, and rate-limit handling for…

A Pythonic interface and command line tool for interacting with the InQuest Labs API.

Offset Independent Credential Extraction Tool

Graphical interface for PortEx, a Portable Executable and Malware Analysis Library

Hash-based malware scanner for incident response. Scans files recursively using known malware hashes, supports multithreading, extension filtering,…

Open YARA scan- and search engine

CVE-2024-43451 is a Windows NTLM vulnerability that allows an attacker to force authentication and capture NTLM hashes by using malicious shortcuts.