malwoverview

Threat hunter

An automated tool for threat hunting and malware analysis

Malwoverview is a first response tool used for threat hunting and offers intel information from Virus Total, Hybrid Analysis, URLHaus, Polyswarm, Malshare, Alien Vault, Malpedia, Malware Bazaar, ThreatFox, Triage, InQuest and it is able to scan Android devices against VT.

GitHub

3k stars
118 watching
444 forks
Language: Python
last commit: 11 days ago
alienvaultcybersecuritymalpediamalsharemalwaremalware-analysismalwarebazaarthreat-huntingthreatfoxthreathuntingthreatintelligencetriageurlhausvirustotal

Related projects:

Repository Description Stars
jstrosch/malware-samples Provides access to malicious files and malware analysis resources 1,478
stamparm/maltrail Detects and analyzes malicious traffic patterns to identify potential security threats. 6,535
lordnoteworthy/al-khaser A Proof-of-Concept malware application designed to test anti-malware and sandbox systems. 5,919
manisso/fsociety A comprehensive collection of hacking tools and scripts for penetration testing and vulnerability assessment 10,637
kevoreilly/capev2 A tool to extract configuration and payload from malware by analyzing its behavior in a sandboxed environment. 2,011
malwaredllc/byob An open-source framework for creating custom post-exploitation tools with automated payload generation and platform independence. 8,989
cristianzsh/freki A platform for analyzing malware and performing reverse engineering on binary files 422
sk3ptre/androidmalware_2019 A collection of Android malware samples from 2019, showcasing various types of threats and techniques used by attackers. 246
sapphirex00/threat-hunting A collection of threat intelligence resources and tools for analyzing APT malware 255
thehive-project/thehive A scalable platform for investigating and managing security incidents, providing features for collaboration, task assignment, and case management. 3,446
maldroid/maldrolyzer A framework to analyze and extract data from Android malware, providing actionable information about malicious code. 102
opennhp/opennhp A Zero Trust networking protocol to hide servers and data from attackers by utilizing cryptography at the OSI 5th layer. 13,515
cybermonitor/apt_cybercriminal_campagin_collections A collection of APT and cybercriminal campaign data, including malware samples and threat intelligence 3,723
vysecurity/cve-2018-4878 Exploits a vulnerability in outdated Shockwave Flash player to gain control of Internet Explorer and execute malicious code. 87
tencent/habomalhunter Automates malware analysis on Linux systems to extract and analyze static and dynamic features 732