qrz.is/content/links/infosec.md

20 KiB
Raw Blame History

title date draft showthedate
Information Security 2022-06-07T08:00:00+02:00 false false

Threat Intelligence Portals/Feeds

Threat Intelligence Tools

  • IntelMQ - Solution for collecting and processing security feeds, pastebins, tweets using a message queue protocol
  • harpoon - CLI tool for open source and threat intelligence
  • Bearded-Avenger / CIF - CIF allows you to combine known malicious threat information from many sources and use that information for incident response, detection and mitigation.
  • MISP - Self-hosted threat information sharing platform
  • Cyber Threat Intelligence Tools - Very extensive list of tools
  • urlQuery - Gives you a screenshot of a given site along with all HTTP transactions (request and response) and executed JS
  • OSINT Framework

Threat Detection

Data Scraping

  • pystemon - Monitoring tool for PasteBin-alike sites written in Python

Vulnerability Management

Honeypots

Tools - Packet String Data (PSTR)

  • URLsnarf
  • Httpry - HTTP logging and information retrieval tool
  • Justsniffer - a network protocol analyzer that captures network traffic

Incident Response

Incident Analysis

Malware Analysis

Detection

String Extraction

PE

Graphical Analysis

Disassembler

PDF Analysis

Office Analysis

Filesystem Analysis

Shellcode Analysis

Reconnaissance

(Post-)Exploitation

Malware Analysis

Hardening / Configuration Auditing

OS Hardening

Web Server Hardening

SIEM Solutions

SOC Related Stuff

Awareness

Other Stuff

Leaked Password Databases

Password Lists