
dissect.cobaltstrike
Python library for dissecting and parsing Cobalt Strike related data such as Beacon payloads and Malleable C2 Profiles
binary-analysiscommand-and-controldigital-forensics+4
198

Python library for dissecting and parsing Cobalt Strike related data such as Beacon payloads and Malleable C2 Profiles

Bro analyzer that detects Google's QUIC protocol

A python script that can detect and parse loki-bot (malware) related network traffic. This script can be helpful to DFIR analysts and security…