Florian Roth (@Neo23x0)
  • Stars
    star
    15,781
  • Global Rank 1,170 (Top 0.05 %)
  • Followers 5,496
  • Following 22
  • Registered about 12 years ago
  • Most used languages
    Python
    66.7 %
    YARA
    12.1 %
    Shell
    6.1 %
    Go
    3.0 %
    C++
    3.0 %
    C#
    3.0 %
    Rust
    3.0 %
    Visual Basic
    3.0 %
  • Location πŸ‡©πŸ‡ͺ Germany
  • Country Total Rank 79
  • Country Ranking
    YARA
    1
    Visual Basic
    17
    Python
    26
    Shell
    45
    C++
    122
    Rust
    377
    C#
    543
    Go
    2,566

Top repositories

1

Loki

Loki - Simple IOC and YARA Scanner
Python
3,321
star
2

signature-base

YARA signature and IOC database for my scanners and tools
YARA
2,426
star
3

yarGen

yarGen is a generator for YARA rules
Python
1,518
star
4

auditd

Best Practice Auditd Configuration
1,448
star
5

Raccine

A Simple Ransomware Vaccine
C++
945
star
6

munin

Online hash checker for Virustotal and other services
Python
809
star
7

log4shell-detector

Detector for Log4Shell exploitation attempts
Python
729
star
8

Fenrir

Simple Bash IOC Scanner
Shell
680
star
9

yarAnalyzer

Yara Rule Analyzer and Statistics
Python
356
star
10

vti-dorks

Awesome VirusTotal Intelligence Search Queries
325
star
11

Fnord

Pattern Extractor for Obfuscated Code
Shell
295
star
12

BlueLedger

A list of my personal projects
166
star
13

DLLRunner

Smart DLL execution for malware analysis in sandbox systems
Python
141
star
14

god-mode-rules

God Mode Detection Rules
YARA
129
star
15

YARA-Performance-Guidelines

A guide on how to write fast and memory friendly YARA rules
122
star
16

evt2sigma

Log Entry to Sigma Rule Converter
Python
104
star
17

yaraQA

YARA rule analyzer to improve rule quality and performance
Python
93
star
18

Cyber-Search-Shortcuts

Browser Shortcuts for Cyber Security Related Online Services
78
star
19

exotron

Sandbox feature upgrade with the help of wrapped samples
Python
75
star
20

Loki2

LOKI2 - Simple IOC and YARA Scanner
Rust
73
star
21

ImpHash-Generator

PE Import Hash Generator
Python
72
star
22

Rewind

Immediate Virus Infection Counter Measures
C#
62
star
23

radiocarbon

Leak File Analyzer
Python
62
star
24

tiny-shells

All kinds of tiny shells
59
star
25

panopticon

A YARA Rule Performance Measurement Tool
YARA
58
star
26

LOLSecIssues

Cybersecurity's lighter side: a collection of the most amusing misunderstandings and missteps from newcomers to offensive security tools. A repository where naivetΓ© in infosec is met with humor.
57
star
27

ti-falsepositives

A collection of typical false positive indicators
Python
54
star
28

webshell-intel

Scan web server for known webshell names and responses
50
star
29

xorex

XOR Key Extractor
Python
48
star
30

Talks

Slides of my public talks
46
star
31

cyber-chef-recipes

Recipes for GCHQ's CyberChef Web App
35
star
32

sysmon-version-history

An Inofficial Sysmon Version History (Change Log)
32
star
33

littlesnitch-log-exporter

LittleSnitch Log Statistics Exporter
Python
32
star
34

YARA-Style-Guide

A specification and style guide for YARA rules
32
star
35

SkeletonKeyScanner

Scanner for the SkeletonKey Malware
Python
30
star
36

ThreatResearch-Reporting-Guide

Offensive Research Guide to Help Defense Improve Detection
29
star
37

prisma

Command Line STDOUT Colorer
Python
29
star
38

ReginScanner

Scanner for Regin Virtual Filesystems
Python
26
star
39

space-id

Invisible Watermarks with Space Characters in ASCII Files
Python
22
star
40

neolog

Windows Syslog Command Line Client
15
star
41

narsil

Spy Agency Teasing
Python
14
star
42

yara-uuid-generator

A tool that adds reproducible UUIDs to YARA rules
Python
13
star
43

WPWatcher

Wordpress Watcher is a wrapper for WPScan that manages scans on multiple sites and reports by email
Python
11
star
44

defensive-project-ideas

Ideas for projects for defensive research or blue teaming
10
star
45

agile-hacking

Collection of hacks that make use of the least available on victim systems
Visual Basic
8
star
46

CredsSpreader

A tool to spread canary credentials in your organisation
8
star
47

language-thor

Syntax Theme for THOR APT Scanner log files
5
star
48

yara-type-selectors

YARA rules to certain types of files without using YARA modules to avoid the performance impact
YARA
5
star
49

PassTweaker

Tweaks password files to match modern password requirements
Python
5
star
50

speedy

(Demo) - Only used to demonstrate a memory leak caused by Golang regexp
Go
4
star
51

loki-cloud

A flexible and lightweight way to execute LOKI on end systems
3
star
52

imphash-go

Imphash Generator
1
star