GossiTheDog/ThreatHunting

Tools for hunting for threats.

YARAthreat-huntingnexthink
This is stars and forks stats for /GossiTheDog/ThreatHunting repository. As of 26 Apr, 2024 this repository has 533 stars and 55 forks.

ThreatHunting I am publishing GPL v3 tools for hunting for threats in your organisations. Nexthink modules Threat hunting - Potential malware downloads v1.0.xml This is a report which shows all calls to internet domains from common malware document techniques. Most endpoint malware - such as macros, Office exploits etc - use the same set of methods to download their payloads. The methods currently monitored include: rundll32 mshta PowerShell wscript/cscript wmic sct remote calls InfDefaultInstall...
Read on GithubGithub Stats Page
repotechsstarsweeklyforksweekly
NVISOsecurity/nviso-ctiYARA37050
archanchoudhury/MSDT_CVE-2022-30190YARA39090
th3b3ginn3r/CVE-2022-26134-Exploit-DetectionYARA1000
Yamato-Security/hayabusaRust1.5k01300
paranoidninja/Brute-Ratel-C4-Community-KitCYARAPowerShell202+2340
kweatherman/yara4idaYARAC++C50080
albertzsigovits/malware-notesYARA54090
countercept/chainsawRust2.2k02070
WithSecureLabs/iocsYARA11040
elastic/protections-artifactsYARALua725+4780