A decoder for the SUNBURST DGA malware DNS traffic
You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.
 
 
Neale Pickett 8c7b2a1234
Documentation
3 months ago
.gitignore subst reconstitution is broken 2 years ago
COPYING.md Documentation 3 months ago
Makefile subst reconstitution is broken 2 years ago
NOTES.md subst reconstitution is broken 2 years ago
README.md Documentation 3 months ago
sunburst.py Add release wording and remove redundant thing 2 years ago

README.md

This is a decoder for the SUNBURST/TEARDROP (UNC2452) Domain Generation Algorithm.

This was done pretty much at the same speed as the public decoders, but because of national security concerns associated with my job, it took me months to release it to the public.

We mainly use this for educational purposes, as a part of Cyber Fire.

This software is in the public domain.