• Stars
    star
    135
  • Rank 259,842 (Top 6 %)
  • Language
    Python
  • License
    Other
  • Created over 8 years ago
  • Updated over 5 years ago

Reviews

There are no reviews yet. Be the first to send feedback to the community and the maintainers!

Repository Details

GoatRider is a simple tool that will dynamically pull down Artillery Threat Intelligence Feeds, TOR, AlienVaults OTX, and the Alexa top 1 million websites and do a comparison to a hostname file or IP file.

GoatRider is a simple tool for doing a comparison of IP addresses or hostnames to BDS Artillery Feeds, OTX, Alexa Top 1M, and TOR.

INSTRUCTIONS: Pass a file that has a list of hostnames or IP addresses and wait for the output to see if there are any matches Written by: Dave Kennedy (@HackingDave) from Binary Defense (@BinaryDefense)

Usage: python goatrider.py <hostnames_or_ips.txt>

More Repositories

1

log4j-honeypot-flask

Internal network honeypot for detecting if an attacker or insider threat scans your network for log4j CVE-2021-44228
Python
146
star
2

auto-ossec

Python
139
star
3

YaraMemoryScanner

Simple PowerShell script to enable process scanning with Yara.
PowerShell
81
star
4

beacon-fronting

A simple command line program to help defender test their detections for network beacon patterns and domain fronting
Go
64
star
5

ThreatHuntingJupyterNotebooks

Jupyter Notebook
53
star
6

BinaryDefense.FSharp.Analyzers

Security analyzers for the FSharp (F#) language
F#
36
star
7

IcedDecrypt

IcedID Decryption Tool
Python
27
star
8

GhidraRustDependenciesExtractor

Ghidra script for extracting embedded Rust crate dependency strings from a compiled Rust binary
Python
22
star
9

JsonWrapper

A Myriad plugin for generating statically typed lossless wrappers around JToken given a schema.
F#
15
star
10

glyph-hunter

Python Flask web app that checks names for potential homoglyph characteristics and reports results in json format
Python
4
star
11

decloaker

A script that attempts to decloak symbiote activity, and some other LD_PRELOAD activity
Shell
2
star
12

mining-pools

List of mining pool domain names for use in detection logic
2
star
13

OTX-Microsoft-Logic-App

Microsoft Logic App for consuming Open Threat Exchange (OTX) data in Microsoft Sentinel / Log Analytics Workspace
2
star
14

borat-rat-plugin-emulators

.Net Libraries (DLLs) re-written from scratch that emulate the functionality of Borat RAT for defese testing purposes
C#
2
star
15

RPCFirewall-LogParsers

1
star