AIL Framework Logo

AIL Framework

0
Free
Visit Website

AIL (Analysis of Information Leaks) Framework is an open-source tool designed to analyze potential information leaks from unstructured data sources. It processes data from various sources, including pastes and data streams, to identify sensitive information. Key features include: - Modular architecture for handling structured and unstructured data - Support for external ZMQ feeds - URL detection and geolocation - Credit card number and credential leak detection - Email address extraction and validation - Tor .onion address extraction - Full-text indexing - YARA rule matching and retro-hunting - Decoding of encoded files - API key detection (AWS, Google) - Cryptocurrency address detection - Tagging system with MISP Galaxy and Taxonomies - Integration with MISP and TheHive for sharing threat intelligence - Correlation engine for visualizing relationships between extracted data - Web crawler for websites, forums, and Tor hidden services - Domain availability monitoring

FEATURES

ALTERNATIVES

Fabric Platform is a cybersecurity reporting solution that automates and standardizes report generation, offering a private-cloud platform, open-source tools, and community-supported templates.

DFIRTrack is an open source web application focused on incident response for handling major incidents with many affected systems, tracking system status, tasks, and artifacts.

A set of scripts for collecting forensic data from Windows and Unix systems respecting the order of volatility.

Open-source abuse management toolkit for automating and improving the abuse handling process.

A data curation platform that automates security data collection, transformation and routing while reducing data volume and infrastructure costs.

Tool to bypass endpoint solutions blocking known 'malicious' signed applications by obtaining valid signed files with different hashes.

AWS Community repository of custom Config rules with instructions for leveraging and developing AWS Config Rules.

PowerGRR is a PowerShell module for the GRR API, allowing automation and scripting for incident response and remote live forensics.