Internet Storm Center
Sign In
Sign Up
Handler on Duty:
Xavier Mertens
Threat Level:
green
Date
Author
Title
SNIPPING TOOL
2023-03-25
Guy Bruneau
Microsoft Released an Update for Windows Snipping Tool Vulnerability
SNIPPING
2023-03-25/a>
Guy Bruneau
Microsoft Released an Update for Windows Snipping Tool Vulnerability
2023-03-22/a>
Didier Stevens
Windows 11 Snipping Tool Privacy Bug: Inspecting PNG Files
TOOL
2024-10-24/a>
Johannes Ullrich
Development Features Enabled in Prodcution
2024-09-30/a>
Jim Clausing
Tool update: mac-robber.py and le-hex-to-ip.py
2024-06-15/a>
Didier Stevens
Overview of My Tools That Handle JSON Data
2024-03-24/a>
Jim Clausing
Tool updates: le-hex-to-ip.py and sigs.py
2023-10-05/a>
Jim Clausing
New tool: le-hex-to-ip.py
2023-07-24/a>
Rob VandenBrink
JQ: Another Tool We Thought We Knew
2023-07-01/a>
Russ McRee
Sandfly Security
2023-03-25/a>
Guy Bruneau
Microsoft Released an Update for Windows Snipping Tool Vulnerability
2023-03-22/a>
Didier Stevens
Windows 11 Snipping Tool Privacy Bug: Inspecting PNG Files
2023-01-02/a>
Xavier Mertens
NetworkMiner 2.8 Released
2022-10-18/a>
Xavier Mertens
Python Obfuscation for Dummies
2022-06-23/a>
Xavier Mertens
FLOSS 2.0 Has Been Released
2022-03-24/a>
Xavier Mertens
Malware Delivered Through Free Sharing Tool
2021-10-08/a>
Rob VandenBrink
Sorting Things Out - Sorting Data by IP Address
2021-06-13/a>
Jim Clausing
Update: mac-robber.py
2021-04-22/a>
Xavier Mertens
How Safe Are Your Docker Images?
2021-01-27/a>
Jan Kopriva
TriOp - tool for gathering (not just) security-related data from Shodan.io (tool drop)
2020-08-25/a>
Xavier Mertens
Keep An Eye on LOLBins
2020-06-11/a>
Xavier Mertens
Anti-Debugging JavaScript Techniques
2020-03-13/a>
Rob VandenBrink
Not all Ethernet NICs are Created Equal - Trying to Capture Invalid Ethernet Frames
2020-02-27/a>
Xavier Mertens
Offensive Tools Are For Blue Teams Too
2019-10-29/a>
Xavier Mertens
Generating PCAP Files from YAML
2019-05-10/a>
Xavier Mertens
DSSuite - A Docker Container with Didier's Tools
2018-11-17/a>
Xavier Mertens
Quickly Investigating Websites with Lookyloo
2018-11-11/a>
Pasquale Stirparo
Community contribution: joining forces or multiply solutions?
2018-10-10/a>
Xavier Mertens
"OG" Tools Remain Valuable
2018-08-15/a>
Xavier Mertens
Truncating Payloads and Anonymizing PCAP files
2018-08-05/a>
Didier Stevens
Video: Maldoc analysis with standard Linux tools
2018-07-30/a>
Xavier Mertens
Exploiting the Power of Curl
2018-01-26/a>
Xavier Mertens
Investigating Microsoft BITS Activity
2017-09-19/a>
Jim Clausing
New tool: mac-robber.py
2017-05-26/a>
Lorna Hutcheson
File2pcap - A new tool for your toolkit!
2017-04-19/a>
Xavier Mertens
Hunting for Malicious Excel Sheets
2017-01-13/a>
Xavier Mertens
Who's Attacking Me?
2017-01-12/a>
Mark Baggett
Some tools updates
2017-01-12/a>
Mark Baggett
System Resource Utilization Monitor
2017-01-07/a>
Xavier Mertens
Using Security Tools to Compromize a Network
2016-02-06/a>
Jim Clausing
More updates to kippo-log2db
2015-08-31/a>
Xavier Mertens
Detecting file changes on Microsoft systems with FCIV
2015-02-19/a>
Daniel Wesemann
Macros? Really?!
2015-02-07/a>
Jim Clausing
Update to kippo-log2db.pl
2014-11-05/a>
Russ McRee
Tool Tip: vFeed
2014-09-14/a>
Jim Clausing
SSDEEP update
2014-08-12/a>
Adrien de Beaupre
Host discovery with nmap
2014-08-06/a>
Chris Mohan
Free Service to Help CryptoLocker Victims by FireEye and Fox-IT
2013-11-19/a>
Jim Clausing
Updated dumpdns.pl
2013-10-22/a>
Richard Porter
Greenbone and OpenVAS Scanner
2013-09-02/a>
Guy Bruneau
Snort IDS Sensor with Sguil New ISO Released
2013-06-18/a>
Russ McRee
EMET 4.0 is now available for download
2013-06-05/a>
Richard Porter
Windows Sysinternals Updated http://technet.microsoft.com/en-us/sysinternals/default.aspx
2013-05-11/a>
Lenny Zeltser
Extracting Digital Signatures from Signed Malware
2013-02-03/a>
Lorna Hutcheson
Is it Really an Attack?
2012-12-03/a>
John Bambenek
John McAfee Exposes His Location in Photo About His Being on Run
2012-05-06/a>
Jim Clausing
Tool updates and Win 8
2011-08-25/a>
Kevin Shortt
Revival of an Unpatched Apache HTTPD DoS
2011-08-22/a>
Jim Clausing
Are your tools ready for IPv6? (part 2)
2011-08-04/a>
Jim Clausing
Are your tools ready for IPv6? (part 1)
2010-12-30/a>
Rick Wanner
SamuraiWTF Review over at ISSA Toolsmith
2010-12-09/a>
Mark Hofman
Having a look at the DDOS tool used in the attacks today
2010-12-05/a>
Jim Clausing
Updates to a couple of Sysinternals tools
2010-10-20/a>
Jim Clausing
Tools updates - Oct 2010
2010-10-19/a>
Rob VandenBrink
Cyber Security Awareness Month - Day 19 - Remote Access Tools
2010-10-19/a>
Rob VandenBrink
Cyber Security Awareness Month - Day 19 - VPN and Remote Access Tools
2010-08-09/a>
Jim Clausing
Free/inexpensive tools for monitoring systems/networks
2010-07-13/a>
Jim Clausing
Forensic challenge results
2010-05-28/a>
Jim Clausing
Wireshark SMB file extraction plug-in
2010-05-04/a>
Rick Wanner
SIFT review in the ISSA Toolsmith
2010-03-30/a>
Marcus Sachs
Zigbee Analysis Tools
2010-03-30/a>
Pedro Bueno
Sharing the Tools
2010-01-19/a>
Jim Clausing
Forensic challenges
2010-01-06/a>
Johannes Ullrich
New Tool: IPv6 conversions http://isc.sans.org/tools/ipv6.html
2009-11-26/a>
Tony Carothers
What Are You Thankful For?
2009-11-25/a>
Jim Clausing
Tool updates
2009-11-02/a>
Rob VandenBrink
Microsoft releases v1.02 of Enhanced Mitigation Evaluation Toolkit (EMET)
2009-09-24/a>
Jim Clausing
A couple more tools
2009-08-13/a>
Jim Clausing
Tools for extracting files from pcaps
2009-05-25/a>
Jim Clausing
More tools for (US) Memorial Day
2009-04-02/a>
Bojan Zdrnja
JavaScript insertion and log deletion attack tools
2009-03-01/a>
Jim Clausing
Cool combination of tools
2008-12-13/a>
Jim Clausing
Followup from last shift and some research to do.
2008-11-17/a>
Jim Clausing
How are you coming with that IPv6 migration?
2008-11-13/a>
Jim Clausing
Some recently updated tools
2008-09-22/a>
Jim Clausing
More on tools/resources/blogs
2008-09-07/a>
Lorna Hutcheson
Malware Analysis: Tools are only so good
2008-07-11/a>
Jim Clausing
Updates to some of our favorite tools
Homepage
Diaries
Podcasts
Jobs
Data
TCP/UDP Port Activity
Port Trends
SSH/Telnet Scanning Activity
Weblogs
Threat Feeds Activity
Threat Feeds Map
Useful InfoSec Links
Presentations & Papers
Research Papers
API
Tools
DShield Sensor
DNS Looking Glass
Honeypot (RPi/AWS)
InfoSec Glossary
Contact Us
Contact Us
About Us
Handlers
About Us
Slack Channel
Mastodon
Bluesky
X
Have you seen our swag?
Buy SANS ISC Gear