Canadian Centre for Cyber Security (@CybercentreCanada)

Top repositories

1

assemblyline

AssemblyLine 4: File triage and malware analysis
Python
188
star
2

CCCS-Yara

YARA rule metadata specification and validation utility / Spécification et validation pour les règles YARA
Python
90
star
3

jupyterlab-sql-editor

A JupyterLab extension providing, SQL formatter, auto-completion, syntax highlighting, Spark SQL and Trino
Jupyter Notebook
78
star
4

assemblyline-base

Base components for Assemblyline 4 (Datastore, ODM, Filestore, Remote Datatypes, utils function, etc...)
Python
58
star
5

sawp

Security Aware Wire Protocol parsing library
Rust
32
star
6

assemblyline4_docs

AssemblyLine4 documentation
HTML
28
star
7

assemblyline_client

Python client for Assemblyline 3 and 4 / Client python pour AssemblyLine 3 and 4
Python
22
star
8

Maco

Maco - Malware config extractor framework
Python
20
star
9

assemblyline-service-cuckoo

Assemblyline 4 Malware detonation service (Cuckoo)
Python
18
star
10

assemblyline-core

Core server components for Assemblyline 4 (Alerter, dispatcher, expiry, ingester, scaler, updater, ...)
Python
16
star
11

assemblyline-ui

Web interface and APIs for Assemblyline 4
Python
15
star
12

assemblyline-docker-compose

Docker compose Assemblyline 4 deployment (appliance and development)
Python
13
star
13

assemblyline-v4-service

Base service class from Assemblyline 4
Python
11
star
14

assemblyline-service-cape

Assemblyline 4 Malware detonation service (CAPEv2)
Python
8
star
15

pysigma

Sigma signatures matcher written in Python
Python
8
star
16

configextractor-py

Python Library for ConfigExtractor
Python
8
star
17

assemblyline-service-deobfuscripter

Assemblyline 4 Scripts deobfuscator
Python
8
star
18

assemblyline-service-server

Service tasking and result publishing API for Assemblyline 4
Python
7
star
19

assemblyline-helm-chart

Assemblyline 4 (File triage and malware analysis platform) Helm charts for cluster and appliance.
Smarty
7
star
20

assemblyline-ui-frontend

Frontend for Assemblyline 4
TypeScript
6
star
21

assemblyline-service-unpacker

Assemblyline 4 unpacking service (UPX)
Python
6
star
22

howler

Elevate your Security Operations Center's efficiency with Howler, the cutting-edge alert triage platform tailored for today's SOC demands.
Smarty
6
star
23

assemblyline-service-XLMMacroDeobfuscator

Assemblyline 4 XLM macro deobfuscator service
Python
5
star
24

assemblyline-service-overpower

Assemblyline 4 PowerShell emulation and static analysis tool
Python
5
star
25

cart

Python implementation of the CaRT library for (un)inerting files.
Python
5
star
26

assemblyline-service-antivirus

Assemblyline 4 service that facilitates the dispatching and result parsing from multiple Anti-Virus products
Python
5
star
27

assemblyline-service-peepdf

Assemblyline 4 PDF Analysis service (PeePDF)
Python
5
star
28

assemblyline-service-configextractor

Assemblyline 4 Malware Configuration Extractor service
Python
4
star
29

assemblyline-service-yara

Assemblyline 4 Yara signature and Post tag processing services
Python
4
star
30

assemblyline-development-setup

Assemblyline 4 repo used for setting up a development environment
Shell
4
star
31

assemblyline-service-metapeek

Assemblyline 4 Metadata anomaly detection service
Python
4
star
32

assemblyline-service-vipermonkey

Assemblyline 4 VBA script emulator service
Python
4
star
33

assemblyline-service-jsjaws

Assemblyline 4 JavaScript emulation and static analysis service
JavaScript
4
star
34

assemblyline-incident-manager

Assemblyline 4 tool used for managing incidents
Python
4
star
35

flux-capacitor

Jupyter Notebook
4
star
36

assemblyline-service-extract

Assemblyline 4 File extraction service
Python
4
star
37

assemblyline-service-emlparser

EML parser service for AssemblyLine 4
Python
4
star
38

cart-rs

Rust
4
star
39

assemblyline-service-iparse

Assemblyline 4 IPA (iOS) information extraction service
Python
3
star
40

assemblyline-service-torrentslicer

Assemblyline 4 Torrent file metadata extractor
Python
3
star
41

assemblyline-service-frankenstrings

Assemblyline 4 IOC and String extraction service
Python
3
star
42

assemblyline-service-apkaye

Assemblyline 4 Android APK analysis service
Python
3
star
43

assemblyline-service-batchdeobfuscator

Assemblyline 4 service for Batch deobfuscator
Python
3
star
44

assemblyline-service-virustotal-dynamic

Assemblyline 4 Virustotal submission service
Python
3
star
45

assemblyline-service-pdfid

Assemblyline 4 PDF Analysis service (PDFiD)
Python
3
star
46

assemblyline-service-pixaxe

Assemblyline 4 steganography service
Python
3
star
47

Multidecoder

Python
3
star
48

assemblyline-java-client

Java client for Assemblyline V4
Java
3
star
49

spark-msgpack-datasource

A spark datasource implementation for the msgpack file format
Scala
3
star
50

howler-api

Howler's API. Howler is an application that allows analysts to triage hits and alerts. It provides a way for analysts to efficiently review and analyze alerts generated by different analytics and detections.
Python
3
star
51

assemblyline-service-swiffer

Assemblyline 4 Adobe flash (SWF) analysis service
Python
3
star
52

assemblyline-service-apivector

Assemblyline 4 service for ApiScout
Python
2
star
53

assemblyline-service-virustotal

Assemblyline 4 service that queries/submits files to VirusTotal for analysis
Python
2
star
54

assemblyline-service-suricata

Assemblyline 4 network capture analysis service
Python
2
star
55

assemblyline-service-metadefender

Assemblyline 4 Metadefender API query service
Python
2
star
56

assemblyline-service-avclass

Assemblyline 4 service that extracts malware family and details from AV labels
Python
2
star
57

assemblyline-service-virustotal-static

Assemblyline 4 Virustotal API query service
Python
2
star
58

assemblyline-service-oletools

Assemblyline 4 Microsoft OLE/XML file analysis service
Python
2
star
59

assemblyline-service-onenoteanalyzer

Onenote analysis service
Python
2
star
60

assemblyline-service-intezer

Assemblyline 4 service which fetchs the result of a specific SHA256 Intezer scan, or submits the file if the SHA256 does not already exist on Intezer.
Python
2
star
61

assemblyline-service-floss

Assemblyline 4 Obfuscated string solver
Python
2
star
62

assemblyline-service-safelist

Assemblyline 4 service for safelisting network and file indicators
Python
2
star
63

assemblyline-service-pefile

Assemblyline 4 PE File analysis service
Python
2
star
64

assemblyline-service-beaver

Assemblyline 4 Beaver API query service
Python
2
star
65

assemblyline-service-client

Service client that interfaces with the API to fetch tasks and publish the result for a service in Assemblyline 4
Python
2
star
66

assemblyline-service-netrep

Assemblyline 4 service that specializes in judging network IOCs
Python
2
star
67

assemblyline-service-espresso

Assemblyline 4 Java JAR analysis service
Python
2
star
68

assemblyline-service-urldownloader

Assemblyline 4 service that downloads seemingly malicious URLs
HTML
1
star
69

assemblyline-service-intezer-static

Assemblyline service which fetches the result of a specific SHA256 Intezer scan
Python
1
star
70

interpret-clusters

Python
1
star
71

assemblyline-service-document-preview

Assemblyline 4 Document preview service
Python
1
star
72

ITSP.40.062

Guidance on Securely Configuring Network Protocols / Conseils sur la configuration sécurisée des protocoles réseau
1
star
73

assemblyline4_docs_fr

AssemblyLine 4 documentation (francais)
HTML
1
star
74

assemblyline-service-utilities

A library containing common methods and classes that are used across Assemblyline 4 services
Python
1
star
75

assemblyline-training-first2023

Workshop for Assemblyline 4 from FIRSTCON2023
Python
1
star
76

assemblyline-v4-p2compat

Assemblyline 4 python 2.7 service compatibility layer
Python
1
star
77

assemblyline-service-sigma

Assemblyline 4 Sigma service for Windows Event Log scanning
Python
1
star
78

assemblyline-service-ancestry

Assemblyline 4 file geneology analysis service
Python
1
star
79

assemblyline-service-onenote

Assemblyline 4 service for OneNote Documents
Python
1
star
80

assemblyline-service-autoit-ripper

AutoIt unpacker service
Python
1
star
81

assemblyline-service-badlist

Assemblyline 4 service for badlisting network and file features
Python
1
star
82

assemblyline-service-capa

Assemblyline 4 service that leverage the CAPA open source tool
Python
1
star
83

kangooroo

A Java Utility for crawling malicious URLs.
Java
1
star
84

howler-ui

Howler's UI. Howler is an application that allows analysts to triage hits and alerts. It provides a way for analysts to efficiently review and analyze alerts generated by different analytics and detections.
TypeScript
1
star
85

assemblyline-service-characterize

Assemblyline 4 metadata extraction and entropy calculation plugin
Python
1
star