Grow your team on GitHub
GitHub is home to over 50 million developers working together. Join them to grow your own development teams, manage permissions, and collaborate on projects.
Sign upRepositories
-
HXTool
HXTool is an extended user interface for the FireEye HX Endpoint product. HXTool can be installed on a dedicated server or on your physical workstation. HXTool provides additional features and capabilities over the standard FireEye HX web user interface. HXTool uses the fully documented REST API that comes with the FireEye HX for communication w…
-
capa
The FLARE team's open-source tool to identify capabilities in executable files.
-
capa-rules
Standard collection of rules for capa: the tool for enumerating the capabilities of programs
-
-
commando-vm
Complete Mandiant Offensive VM (Commando VM), a fully customizable Windows-based pentesting virtual machine distribution. commandovm@fireeye.com
-
jitm
JITM is an automated tool to bypass the JIT Hooking protection on a .NET sample.
-
flare-ida
IDA Pro utilities from FLARE team
-
-
DFUR-Splunk-App
The "DFUR" Splunk application and data that was presented at the 2020 SANS DFIR Summit.
-
FIDL
A sane API for IDA Pro's decompiler. Useful for malware RE and vulnerability research
-
jest-environment-serverless
Testing your Serverless projects with Jest the easy way!
-
muse-technical-challenge
Muse Technical Challenge Stencil Component Starter
-
dod-example-apps
Example applications for FireEye's Detection on Demand service
-
flare-floss
FireEye Labs Obfuscated String Solver - Automatically extract obfuscated strings from malware.
-
flare-qdb
Command-line and Python debugger for instrumenting and modifying native software behavior on Windows and Linux.
-
flare-fakenet-ng
FakeNet-NG - Next Generation Dynamic Network Analysis Tool
-
rvmi-rekall
Rekall Forensics and Incident Response Framework with rVMI extensions
-
-
ioc-scanner-CVE-2019-19781
Indicator of Compromise Scanner for CVE-2019-19781
-
Crescendo
Forked from SuprHackerSteve/CrescendoCrescendo is a swift based, real time event viewer for macOS. It utilizes Apple's Endpoint Security Framework.