Pinned Repositories
ADFSDump
ADFSpoof
BitsParser
blog
capa
The FLARE team's open-source tool to identify capabilities in executable files.
capa-rules
Standard collection of rules for capa: the tool for enumerating the capabilities of programs
capa-testfiles
commando-vm
Complete Mandiant Offensive VM (Commando VM), a fully customizable Windows-based pentesting virtual machine distribution. commandovm@fireeye.com
cyber-chef-recipes
A list of cyber-chef recipes
docker
unic0rn-team's Repositories
unic0rn-team/ADFSDump
unic0rn-team/ADFSpoof
unic0rn-team/BitsParser
unic0rn-team/blog
unic0rn-team/capa
The FLARE team's open-source tool to identify capabilities in executable files.
unic0rn-team/capa-rules
Standard collection of rules for capa: the tool for enumerating the capabilities of programs
unic0rn-team/capa-testfiles
unic0rn-team/commando-vm
Complete Mandiant Offensive VM (Commando VM), a fully customizable Windows-based pentesting virtual machine distribution. commandovm@fireeye.com
unic0rn-team/cyber-chef-recipes
A list of cyber-chef recipes
unic0rn-team/docker
unic0rn-team/flare-fakenet-ng
[Suspended] FakeNet-NG - Next Generation Dynamic Network Analysis Tool
unic0rn-team/flare-floss
FireEye Labs Obfuscated String Solver - Automatically extract obfuscated strings from malware.
unic0rn-team/flare-ida
IDA Pro utilities from FLARE team
unic0rn-team/flare-vm
unic0rn-team/flare-wmi
unic0rn-team/formation-IR
unic0rn-team/malwoverview
Malwoverview is a first response tool to perform an initial and quick triage in a directory containing malware samples, specific malware sample, suspect URL and domains. Additionally, it allows to download and send samples to main online sandboxes.
unic0rn-team/MindHacks
unic0rn-team/OfficePurge
unic0rn-team/red_team_tool_countermeasures
unic0rn-team/safe-mail
safe-mail is a Docker service to help security teams safely interact with msg, eml, and documents
unic0rn-team/SharPersist
unic0rn-team/slides
unic0rn-team/speakeasy
Windows kernel and user mode emulation.
unic0rn-team/sunburst_countermeasures
unic0rn-team/ThreatPursuit-VM
Threat Pursuit Virtual Machine (VM): A fully customizable, open-sourced Windows-based distribution focused on threat intelligence analysis and hunting designed for intel and malware analysts as well as threat hunters to get up and running quickly.
unic0rn-team/unic0rn-team.github.io
unic0rn-team/win10_auto
unic0rn-team/win10_volatility
An advanced memory forensics framework