{"repo":"Hackcraft-Labs/Fairplay","free":true,"listed":false,"github":"https://github.com/Hackcraft-Labs/Fairplay","clone":"git clone https://github.com/Hackcraft-Labs/Fairplay.git","description":"Artifact monitoring that ensures fairplay","language":"Python","stars":79,"topics":["python","hybridanalysis","malware","monitoring","payload","redteam-tools","redteaming","virustotal"],"license":"GPL-3.0","category":"analytics","readme_excerpt":"Fairplay During Red Team operations, one of the most important things is protecting the malware, the crown jewels, the heart pumping blood throughout the whole operation. As soon as our payload is delivered to the targets, an analyst on the Blue Team or perhaps even the target themselves will upload a copy to an online database/sandbox for further analysis. Luckily, these online sources can also be accessed by us, and queried frequently to identify when any of our samples are detected. Fairplay is a framework for performing such tasks, which allows you to define your own IOCs which are searched against multiple sources (you can also define your own sources) and be notified on different channels (you can also define more of these). This is what we consider fair play :^). Intel Sources The following list of intel sources have collectors implemented for them in Fairplay: - VirusTotal - HybridAnalysis - Google - MetaDefender - MalwareBazaar Notifiers The following list of channels have notifiers implemente for them in Fairplay: - Microsoft Teams - Slack - Terminal Console (stdout) Setup Install the requirements (probably in a virtual environment) using Python 3.10 as usual with: python -m pip install -r requirements.txt Frontend (Angular) From frontend/ : - npm install - ng serve The UI will be available at http://localhost:4200 . Backend (FastAPI) From the repo root: - uvicorn api.app:app --reload --host 127.0.0.1 --port 8000 The backend listens on http://127.0.0.1:8000 . useMoc","default_branch":null,"files":null,"tree":[],"storefront":"/r/Hackcraft-Labs","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/Hackcraft-Labs/Fairplay/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}