MultiScanner is a file analysis framework that assists the user in evaluating a set of files by automatically running a suite of tools for the user and aggregating the output. Tools can be custom built Python scripts, web APIs, software running on another machine, etc. Tools are incorporated by creating modules that run in the MultiScanner framework. MultiScanner also supports a distributed workflow for sample storage, analysis, and report viewing. This functionality includes a web interface, a REST API, a distributed file system (GlusterFS), distributed report storage / searching (Elasticsearch), and distributed task management (Celery / RabbitMQ).
FEATURES
EXPLORE BY TAGS
SIMILAR TOOLS
YARA extension for Visual Studio Code with code completion and snippets
A tool that generates Yara rules from training data using logistic regression and random forest classifiers.
A tool for malware analysts to search through base64-encoded samples and generate yara rules.
A tool that generates Yara rules for strings and their XOR encoded versions, as well as base64-encoded variations with different padding possibilities.
Collection of malware persistence information and techniques
OCyara performs OCR on image files and scans them for matches to Yara rules, supporting Debian-based Linux distros.
A blog post discussing INF-SCT fetch and execute techniques for bypass, evasion, and persistence
A tool for reading Portable Executable (PE) files with detailed information about the file structure.
A toolkit for detecting and tracking Blind XSS, XXE, and SSRF vulnerabilities
PINNED

Mandos
Fractional CISO service that helps B2B companies implement security leadership to win enterprise deals, achieve compliance, and develop strategic security programs.

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.