Results 83 repositories owned by MANDIANT

remote_lookup

55
Stars
26
Forks
Watchers

Resolves DLL API entrypoints for a process w/ remote query capabilities.

apooxml

38
Stars
8
Forks
Watchers

Generate YARA rules for OOXML documents.

ARDvark

34
Stars
12
Forks
Watchers

ARDvark parses the Apple Remote Desktop (ARD) files to pull out application usage, user activity, and filesystem listings.

AuditParser

56
Stars
26
Forks
Watchers

AuditParser

capa-testfiles

34
Stars
59
Forks
Watchers

Data to test capa's code and rules.

chopshop

48
Stars
17
Forks
Watchers

Protocol Analysis/Decoder Framework

dncil

133
Stars
15
Forks
Watchers

The FLARE team's open-source library to disassemble Common Intermediate Language (CIL) instructions.

Ghidrathon

689
Stars
54
Forks
Watchers

The FLARE team's open-source extension to add Python 3 scripting to Ghidra.

goauditparser

42
Stars
19
Forks
Watchers

gocat

30
Stars
23
Forks
Watchers

Provides access to libhashcat