Skip to content

rudinyu/KB

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

18 Commits
 
 

Repository files navigation

DGA

https://cyber.wtf/2017/08/30/dga-classification-and-detection-for-automated-malware-analysis/
https://github.com/philarkwright/DGA-Detection
https://github.com/exp0se/dga_detector
https://github.com/jayjacobs/dga-tutorial
https://github.com/pchaigno/dga-collection
https://github.com/endgameinc/dga_predict
https://github.com/exctzo/dga_prediction_model
**https://docs.umbrella.com/investigate-ui/docs/dga-detection-system-1
**http://datadrivensecurity.info/blog/posts/2014/Sep/dga-part1/
**https://github.com/jayjacobs/dga

DGA samples

https://github.com/azrilrahim/gozdga
https://github.com/andrewaeva/DGA/tree/master/dga_wordlists
https://github.com/baderj/domain_generation_algorithms
https://github.com/pchaigno/dga-collection
https://github.com/andrewaeva/DGA

URL blacklist

http://www.squidblacklist.org/
http://vxvault.net/ViriList.php
https://github.com/maravento/blackweb
https://zeustracker.abuse.ch/blocklist.php (Zeustracker)

#Whitelist http://s3-us-west-1.amazonaws.com/umbrella-static/index.html
https://majestic.com/reports/majestic-million
http://s3.amazonaws.com/alexa-static/top-1m.csv.zip

CVE

https://www.fortinet.com/blog/threat-research/an-analysis-of-the-use-after-free-bug-in-microsoft-edge-chakra-engine.html
https://github.com/yassineaboukir/CVE-2018-0296
https://github.com/wzw19890321/Exploits/tree/master/CVE-2018-4192
https://0day.city/polarisoffice-cve-2018-12589.html
https://github.com/quentinhardy/scriptsAndExploits -- The script exploit-CVE-2017-3248-bobsecq.py exploits the CVE-2017-3248

Threat Intelligence Testing

https://github.com/mlsecproject/tiq-test

Threat Hunting Tools

https://github.com/TonyPhipps/THRecon

Bypass AV

https://noxxi.de/research/mime-5-easy-steps-to-bypass-av.html
https://www.slideshare.net/mobile/SoroushDalili/waf-bypass-techniques-using-http-standard-and-web-servers-behaviour

Attacking Tool

https://github.com/quentinhardy/odat

AREA41 - Anatomy of attacks aimed at financial sector by the Lazarus group
https://www.slideshare.net/SeongsuPark8/area41-anatomy-of-attacks-aimed-at-financial-sector-by-the-lazarus-group-104315358/1

Reinventing Threat Intelligence free sources

MalwareBlacklist http://www.malwareblacklist.com/showMDL.php
MalwareDomain List http://www.malwaredomainlist.com/mdl.php
Malcode http://malc0de.com/database/
HostFile http://hosts-file.net/?s=Browse&f=EMD
Dshield http://www.dshield.org/ipsascii.html
ZeusTracker https://zeustracker.abuse.ch/monitor.php?browse=binaries
PhishTank http://www.phishtank.com/
CyberCrime Tracker http://cybercrime-tracker.net/
MTC SRI http://mtc.sri.com/live_data/attackers/
Malware Group http://www.malwaregroup.com/
Cleam MX http://support.clean-mx.de/clean-mx/viruses
Project Honeypot https://www.projecthoneypot.org/list_of_ips.php
Iseclab http://exposure.iseclab.org/about
Palevo Tracker https://palevotracker.abuse.ch/
Dynamic DNS http://www.malwaredomains.com/?cat=140
Joe Win Domain Blacklist http://www.joewein.de/sw/blacklist.htm
Sucuri Labs http://labs.sucuri.net/
OpenBL http://www.openbl.org/lists/base.txt
Botscout http://www.botscout.com/
VX vault http://vxvault.siri-urz.net/ ==> http://vxvault.net/
URLQuery http://urlquery.net/index.php
JSUnpack http://jsunpack.jeek.org/dec/go?list=1
Uribl http://rss.uribl.com/nic/NAUNET_REG_RIPN.xml
Atlas Arbor Networks http://atlas.arbor.net/summary/fastflux?out=xml
Alienvault https://reputation.alienvault.com/reputation.data
DYSDYN http://security-research.dyndns.org/pub/malware-feeds/ponmocup-botnet-domains.txt
CISCO https://www.talosintelligence.com/vulnerability_info

1.The premier Malware sample dump Contagio(http://contagiodump.blogspot.com/)
2.KernelMode.info (Focuses on Win32 and novel rootkit techniques) (http://www.kernelmode.info/forum/viewforum.php?f=16)
3.The multitude of malware dump sites such as MalwareBlacklist (http://www.malwareblacklist.com/showMDL.php)
4.As qbi kindly pointed out, Malware.lu (http://avcaesar.lu/)

About

No description, website, or topics provided.

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published