Malpedia

230 posts

Malpedia

Malpedia

@malpedia

A curated, high-quality malware corpus. Zoo keepers: @push_pnx and @steffenenders_

Germany Beigetreten Ocak 2017
2 Folgt5.7K Follower
Angehefteter Tweet
Malpedia
Malpedia@malpedia·
To simplify access to and synchronization of Malpedia's automatically generated, code-based YARA rules, we have created the following repository on Github: github.com/malpedia/signa…
English
0
19
67
0
Malpedia
Malpedia@malpedia·
A new set of auto-generated rules (courtesy of@fxb_b) has been published to Malpedia and GitHub. It includes 1460 updated rules and 136 new additions.
English
0
5
7
1.3K
Malpedia
Malpedia@malpedia·
@AzakaSekai_ thanks for the notice - we need to have the cert issues by our org and can't do that before business hours tomorrow morning. 🙄 I've now removed HSTS though, so it should at least be accessible...
English
1
0
5
398
Malpedia retweetet
Malcat dev
Malcat dev@malcat4ever·
You can now check your strings in #malcat against an online library of #Malpedia FLOSSed strings. Just copy this plugin, courtesy of @push_pnx : #plugin-for-malcat" target="_blank" rel="nofollow noopener">github.com/malpedia/malpe…
Malcat dev tweet media
English
0
27
95
6.4K
Malpedia
Malpedia@malpedia·
A new set of auto-generated rules (courtesy of @fxb_b) has been published to Malpedia and GitHub. It includes 1371 updated rules and 91 new additions.
English
1
0
10
1.2K
RussianPanda 🐼 🇺🇦
RussianPanda 🐼 🇺🇦@RussianPanda9xx·
Currently looking at the stealer sample. Let's collectively agree to call it #0bj3ctivityStealer from now on (credit to @AgidCert, reference: cert-agid.gov.it/news/entra-in-…) due to my inability to type and pronounce PXRECVOWEIWOEI on the 100th try.
Yogesh Londhe@suyog41

PXRECVOWEIWOEI Stealer RFQ.xlsx 08ea604f05ff7b003fe8d3a25153988b downloads name.exe 0860b9decf194469ff9004953916fad8 - Exfiltrate data via telegram #PXRECVOWEIWOEI #Stealer #IOC

English
2
6
25
4K
Malpedia retweetet
Max 'Libra' Kersten
Max 'Libra' Kersten@Libranalysis·
Based on this, I updated the @TrellixARC Ghidra script to locally use this JSON file. Additionally, I wrote a script to query the Malpedia web service via the exposed API, which one can also host locally. The Ghidra scripts can be found here: github.com/advanced-threa…
Malpedia@malpedia

📣We updated "Malpedia FLOSSed". TL;DR: More data, cleaner Rust/Go/Dotnet strings, various tags! We also created a public web service to make this data more accessible: strings.malpedia.io, as well as an IDA plugin as a demo use case. Read more -> github.com/malpedia/malpe…

English
2
6
16
3K
Malpedia
Malpedia@malpedia·
📣We updated "Malpedia FLOSSed". TL;DR: More data, cleaner Rust/Go/Dotnet strings, various tags! We also created a public web service to make this data more accessible: strings.malpedia.io, as well as an IDA plugin as a demo use case. Read more -> github.com/malpedia/malpe…
Malpedia tweet mediaMalpedia tweet mediaMalpedia tweet media
English
1
20
60
15.8K
Malpedia retweetet
Albert Zsigovits
Albert Zsigovits@albertzsigovits·
I feel like this dump doesn't get enough credit. So I filtered all malware debug ascii/utf16 strings from it and included it in a YAR rule file. That's just one use-case for this awesome dump. There are lots of other interesting malware indicators in it that could be used in a different way. @malpedia @push_pnx #100DaysofYARA #malpedia
Albert Zsigovits tweet media
Malpedia@malpedia

🛠️ We just published "Malpedia flossed": @Mandiant FLARE team's floss tool applied to all unpacked + dumped samples in @malpedia. Results: 35.645.324 raw strings, distilled to 2.137.276 unique strings from 1751 processed malware families - 400 MB JSON. -> github.com/malpedia/malpe…

English
4
8
21
5.2K
Malpedia
Malpedia@malpedia·
🛠️ We just published "Malpedia flossed": @Mandiant FLARE team's floss tool applied to all unpacked + dumped samples in @malpedia. Results: 35.645.324 raw strings, distilled to 2.137.276 unique strings from 1751 processed malware families - 400 MB JSON. -> github.com/malpedia/malpe…
Malpedia tweet media
English
3
56
138
19.4K
Malpedia retweetet
Florian Roth ⚡️
Florian Roth ⚡️@cyb3rops·
Introducing YARA-Forge ⚡️ - Streamlined Public YARA Rule Collection Excited to share my latest project with the community just in time for Christmas! After weeks of hard work, it's finally ready 🎄🎁 Blog Post cyb3rops.medium.com/introducing-ya… Project Page yarahq.github.io
Florian Roth ⚡️ tweet media
English
11
255
603
70.3K
Malpedia
Malpedia@malpedia·
We just deployed several updates to Malpedia. 1) There is now an RSS feed available. 2) @MsftSecIntel threat actor names have been integrated as aliases. 3) Family pages have links to @virustotal collections. 4) Library entries indicate if the article language is not English.
English
3
21
82
8.8K
Malpedia
Malpedia@malpedia·
Another iteration of the YARA-Signator rule set has been generated by @fxb_b and has been published to Malpedia and GitHub. It includes 1311 updated rules and 73 new additions.
English
0
2
13
1.6K
Malpedia
Malpedia@malpedia·
After two weeks of vacation we are back to content aggregation! 👾📒 We also doubled the hardware of our server, which should help make the website more responsive again.
English
0
1
5
992