Open Source CyberSecurity Tools

Lazarus
Jul 8, 2023

--

This post will share what are the common resources that I have used at work daily as Malware Analyst and also CyberSOC Analyst.

Sandboxes

  1. Virustotal (virustotal.com)

Most popular sandbox ever known (i guess), quick, and easy to navigate. It has multiple functions that provide useful information regarding files or URLs. The main page will either ask you to upload/submit a file, enter a URL, or query a hash (unique ID for a file). It will then display the result from multiple security vendors that are available.

main page for virustotal.com

2. Any.Run (app.any.run)

3. Malware Bazaar (bazaar.abuse.ch)

4. Joe Sandbox (https://joesandbox.com)

5. Hybrid Falcon Analysis (https://www.hybrid-analysis.com)

URL/IP Checker

  1. URL Scan (urlscan.io)
  2. AbuseIPDB (abuseipdb.com)
  3. Scumware (scumware.com)
  4. Palo Alto Test Site(https://urlfiltering.paloaltonetworks.com)
  5. Sucuri (https://sitecheck.sucuri.net)
  6. Cisco Talos (https://www.talosintelligence.com)
  7. Phishtank (phishtank.org)
  8. SSL Checker (https://www.sslchecker.com)

--

--

Lazarus
0 Followers

Malware Analyst, CyberSOC Analyst