Skip to content

Pinned Loading

  1. capa capa Public

    The FLARE team's open-source tool to identify capabilities in executable files.

    Python 5.4k 610

  2. flare-vm flare-vm Public

    A collection of software installations scripts for Windows systems that allows you to easily setup and maintain a reverse engineering environment on a VM.

    Python 7.3k 998

  3. flare-floss flare-floss Public

    FLARE Obfuscated String Solver - Automatically extract obfuscated strings from malware.

    Python 3.6k 482

  4. commando-vm commando-vm Public

    Complete Mandiant Offensive VM (Commando VM), a fully customizable Windows-based pentesting virtual machine distribution. [email protected]

    PowerShell 7.2k 1.3k

  5. Vulnerability-Disclosures Vulnerability-Disclosures Public

    C++ 201 67

Repositories

Showing 10 of 96 repositories
  • mandiant/macos-UnifiedLogs’s past year of commit activity
    Rust 248 Apache-2.0 24 5 1 Updated Jun 5, 2025
  • ADFSpoof Public
    mandiant/ADFSpoof’s past year of commit activity
    Python 395 Apache-2.0 65 2 5 Updated Jun 5, 2025
  • VM-Packages Public

    Chocolatey packages supporting the analysis environment projects FLARE-VM & Commando VM.

    mandiant/VM-Packages’s past year of commit activity
    PowerShell 180 Apache-2.0 80 110 16 Updated Jun 4, 2025
  • capa Public

    The FLARE team's open-source tool to identify capabilities in executable files.

    mandiant/capa’s past year of commit activity
    Python 5,357 Apache-2.0 610 231 (8 issues need help) 27 Updated Jun 3, 2025
  • flare-floss Public

    FLARE Obfuscated String Solver - Automatically extract obfuscated strings from malware.

    mandiant/flare-floss’s past year of commit activity
    Python 3,552 Apache-2.0 482 95 (2 issues need help) 12 Updated Jun 3, 2025
  • capa-rules Public

    Standard collection of rules for capa: the tool for enumerating the capabilities of programs

    mandiant/capa-rules’s past year of commit activity
    588 Apache-2.0 185 110 (4 issues need help) 10 Updated Jun 2, 2025
  • dncil Public

    The FLARE team's open-source library to disassemble Common Intermediate Language (CIL) instructions.

    mandiant/dncil’s past year of commit activity
    Python 165 Apache-2.0 17 2 (1 issue needs help) 7 Updated Jun 2, 2025
  • xrefer Public

    FLARE Team's Binary Navigator

    mandiant/xrefer’s past year of commit activity
    Python 260 Apache-2.0 24 5 2 Updated May 25, 2025
  • capa-testfiles Public

    Data to test capa's code and rules.

    mandiant/capa-testfiles’s past year of commit activity
    Max 42 Apache-2.0 78 0 8 Updated May 22, 2025
  • stringsifter Public

    A machine learning tool that ranks strings based on their relevance for malware analysis.

    mandiant/stringsifter’s past year of commit activity
    Python 718 Apache-2.0 123 6 2 Updated May 19, 2025