{"repo":"CERT-Polska/karton","free":true,"listed":false,"github":"https://github.com/CERT-Polska/karton","clone":"git clone https://github.com/CERT-Polska/karton.git","description":"Distributed malware processing framework based on Python, Redis and S3.","language":"Python","stars":476,"topics":["karton","cert","csirt","pipeline","malware-analysis","malware-research","cybersecurity"],"license":"BSD-3-Clause","category":"security-tools","readme_excerpt":"Karton Distributed malware processing framework based on Python, Redis and S3. The idea Karton is a robust framework for creating flexible and lightweight malware analysis backends. It can be used to connect malware analysis systems into a robust pipeline with very little effort. We've been in the automation business for a long time. We're dealing with more and more threats, and we have to automate everything to keep up with incidents. Because of this, we often end up with many scripts stuck together with duck duct tape and WD-40. These scripts are written by analysts in the heat of the moment, fragile and ugly - but they work, and produce intel that must be stored, processed further, sent to other systems or shared with other organisations. We needed a way to take our PoC scripts and easily insert them into our analysis pipeline. We also wanted to monitor their execution, centralise logging, improve robustness, reduce development inertia... For this exact purpose, we created Karton . \\ while Karton was designed with malware analysis in mind, it works nicely in every microservice-oriented project. Installation Installation is as easy as a single pip install command: In order to setup the whole backend environment you will also need S3-compatible storage and Redis, see the docs for details. Example usage To use karton you have to provide class that inherits from Karton. Command line This package also provies a command-line utility called \"karton\". You can use it for simple man","default_branch":null,"files":null,"tree":[],"storefront":"/r/CERT-Polska","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/CERT-Polska/karton/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}