xme
Freelance Security Consultant, SANS ISC Handler, SANS FOR610 Instructor, Blueteamer, Hunter, Blogger.
XamecoBelgium
Pinned Repositories
cuckoomx
CuckooMX is a project to automate analysis of files transmitted over SMTP (using the Cuckoo sandbox)
dockers
Miscelaneous Dockers
emlrender
EML file rendering tool
hoover
Wireless Probe Requests Sniffer
mime2vt
Unpack MIME attachments from a file and check them against virustotal.com
misp-docker
Docker container for MISP
pastemon
pastebin.com Content Monitoring Tool
powershell_scripts
Miscellaneous PowerShell scripts
toolbox
Miscelaneous useful scripts for my day to day projects
tweetsniff
Grab a Twitter user timeline for further processing (storing to Elasticsearch, highligthing, etc)
xme's Repositories
xme/hoover
Wireless Probe Requests Sniffer
xme/toolbox
Miscelaneous useful scripts for my day to day projects
xme/powershell_scripts
Miscellaneous PowerShell scripts
xme/dockers
Miscelaneous Dockers
xme/emlrender
EML file rendering tool
xme/fpc
Full Packet Capture for the Masses
xme/pfaudit
pfSense Configuration Auditing Script
xme/SANS-ISC
Data related to the SANS Internet Storm Center
xme/yara-rules
Repository of own YARA rules
xme/velociraptor
Velociraptor Stuff
xme/fame_modules
Personal FAME modules
xme/ossec-bsideslux2018
Threat Hunting with OSSEC - BSidesLux 2018
xme/Cortex-Analyzers
Cortex Analyzers Repository
xme/dshield
DShield Raspberry Pi Sensor
xme/misp-website
MISP website (hugo-based)
xme/nanoleaf
Nanoleaf related stuff (See https://nanoleaf.me/ for more info)
xme/ossec
xme/SIGMA-detection-rules
Set of SIGMA rules (>250) mapped to MITRE Att@k tactic and techniques
xme/AIL-framework
AIL framework - Analysis Information Leak framework
xme/analyze-community-ghidra-plugin
Ghidra plugin for https://analyze.intezer.com
xme/bitscout
Remote forensics meta tool
xme/CAPEv2
Malware Configuration And Payload Extraction
xme/CertStreamMonitor
Monitor certificates generated for specific domain strings and associated, store data into sqlite3 database, alert you when sites come online.
xme/create_thehive_alert
Send alerts from Splunk to TheHive
xme/dshieldpfsense
Client to submit firewall logs from PFSense to DShield
xme/mantis
Mantis is a security framework that automates the workflow of discovery, reconnaissance, and vulnerability scanning.
xme/pgp
xme/synapse
Synapse: Matrix reference homeserver
xme/TA-thehive
Splunk TA for alert action to TheHive-project
xme/velociraptor-misp
Artifacts for integrating MISP with Velociraptor