解析メモ

マルウェア解析してみたり解析に役に立ちそうと思ったことをメモする場所。このサイトはGoogle Analyticsを利用しています。

4n6 Week 20 – 2023 - SOFTWARE UPDATES

本エントリは This Week in 4n6 (FourAndSix=Forensics) で紹介された各記事の冒頭を表示し、チェックする記事をザッピングするために自動生成&投稿したものです。4n6 は こちら からご確認いただけます。

SOFTWARE UPDATES

Cyber Ark

Output files License and Copyright README.md White Phoenix This tool recovers content from files encrypted by Ransomware using “intermittent encryption” Tested on: BlackCat/ALPHV Ransomware, Play Ransomware, Qilin/Agenda Ransomware, BianLian Ransomware, DarkBit Usage: python3 White-Phoenix.py [-h] -f/--file FILE -o/--output FOLDER -f/--file : path to the encrypted file -o/--output : path to folder to save the content extracted from the file Currently supported filetypes include: 'pdf', 'docx', '...

DeTTECT

v1.9.0 Latest Latest Compare Choose a tag to compare View all tags rubinatorz released this 11 May 18:45 · 6 commits to master since this release v1.9.0 98c10b7 DeTT&CT now supports Mobile data sources which are introduced in MITRE ATT&CK version 13. Assets 2 All reactions Footer © 2023 GitHub, Inc. Footer navigation Terms Privacy Security Status Docs Contact GitHub Pricing API Training Blog About You can’t perform that action at this time. You signed in with another tab or window. Reload to ref...

Digital Sleuth

Skip to content Toggle navigation Sign up Product Actions Automate any workflow Packages Host and manage packages Security Find and fix vulnerabilities Codespaces Instant dev environments Copilot Write better code with AI Code review Manage code changes Issues Plan and track work Discussions Collaborate outside of code Explore All features Documentation GitHub Skills Blog Solutions For Enterprise Teams Startups Education By Solution CI/CD & Automation DevOps DevSecOps Case Studies Customer Stori...

EclecticIQ

Our Latest Release Offers a More Powerful and Extensible Foundation for the CTI Demands of Tomorrow Mark Huijnen – May 10, 2023 We are excited to announce the release of the latest version of EclecticIQ Intelligence Center, providing a strong foundation for mature CTI teams to overcome their future challenges. Intelligence Center 3.0 contains significant structural changes, new features, and enhancements that make it our most powerful and extensible Threat Intelligence Platform yet. More Granula...

Harel Segev

Latest Latest Compare Choose a tag to compare View all tags harelsegev released this 13 May 22:59 v5.2.8 00a6946 What's new? Fixed incorrect application of fix-up values for 4K native drives (#12) Better handling of corrupted index records Tweaked filename validation in slack entries Assets 4 All reactions Footer © 2023 GitHub, Inc. Footer navigation Terms Privacy Security Status Docs Contact GitHub Pricing API Training Blog About You can’t perform that action at this time. You signed in with an...

Metaspike

Forensic Email CollectorIdeasRoadmapAnnouncementsSearch Ideas...Log inSign upAnnouncementsFilterNew updates and improvements to Forensic Email CollectorAll Announcements11 May, 20233.87.0.6FEC ReleaseThis is a maintenance release that addresses an IMAP legacy authentication issue.LikeHomeLog in

Passmark Software

ESEDB Viewer Fixed a bug where Windows.edb file could not be loaded from an image file Changed the selecting custom Windows.edb file behavior to make the Windows.edb filepath as the initial directory Logical Image - Android Copy Fixed possible crash during imaging due to long file names/extension Program Artifacts Fixed parsing of the prefetch files for windows 10 builds 1903 and newer to collect the correct run count Report Generation Fixed issue where all 'Exported Files' were added to every '...

SigmaHQ

Skip to content Toggle navigation Sign up Product Actions Automate any workflow Packages Host and manage packages Security Find and fix vulnerabilities Codespaces Instant dev environments Copilot Write better code with AI Code review Manage code changes Issues Plan and track work Discussions Collaborate outside of code Explore All features Documentation GitHub Skills Blog Solutions For Enterprise Teams Startups Education By Solution CI/CD & Automation DevOps DevSecOps Case Studies Customer Stori...

Rapid7

GUI improvementsTable filtering and sortingVFS GUI improvementsHex viewer and file previewer GUIArtifact pack import GUI improvementsDirect SMB supportUsing SMB for distributing toolsThe offline collectorSMB server uploadsAzure Blob storage service.Debugging VQL queriesLocking down the serverAudit eventsTool definitions can now specify an expected hashConclusionsReleaseVelociraptor 0.6.9 ReleaseMike Cohen 2023-05-05I am very excited to announce the latest Velociraptor release 0.6.9 is now in rel...

Xways

X-Ways Forensics 20.9 Log Out | Topics | Search Moderators | Edit Profile X-Ways User Forum » Public Announcements » X-Ways Forensics 20.9 « Previous Next » Author Message Stefan Fleischmann Username: adminRegistered: 1-2001Posted on Tuesday, May 2, 2023 - 20:45: A preview version of X-Ways Forensics 20.9 is now available. The URL of the download directory for all recent versions can be retrieved by querying one's license status as always. What's new in v20.9 Preview 1? * What's better than 5 ha...

Yamato Security

Skip to content Toggle navigation Sign up Product Actions Automate any workflow Packages Host and manage packages Security Find and fix vulnerabilities Codespaces Instant dev environments Copilot Write better code with AI Code review Manage code changes Issues Plan and track work Discussions Collaborate outside of code Explore All features Documentation GitHub Skills Blog Solutions For Enterprise Teams Startups Education By Solution CI/CD & Automation DevOps DevSecOps Case Studies Customer Stori...