Cuckoo Install - Your Own Malware Sandbox!

preview_player
Показать описание
Join me as we install Cuckoo. Your very own malware sandbox! Let's deploy a Host Intrusion Detection System and SIEM with free open source tools. Join me as we explore and learn together.

Рекомендации по теме
Комментарии
Автор

Great video, I was really looking for a video guiding me to step-by-step process of how to prepare cuckoo.

I will try this next week and I hope that it works without any issue.

Thank you for your efforts.

mohammedshengheer
Автор

Thank you Thank you SIR! You are truly a gifted person. I've been struggling to get cuckoo3 set up for days.

treyday
Автор

After some days trying to use this sandbox i found your tutorial, it solved my problems and is working great! Thanks a lot.

henrique
Автор

Thank you that helping me for creating environment dynamic analysis thanks again

bilalsec
Автор

Another great video. Would love to see cuckoo integration with both misp and cortex

tshepisomotsoaledi
Автор

update regarding the steup. it took me almost one week but its fully functional now. i must admit its a beautiful machine.

jondo-vhtx
Автор

Great video. Can i set up a windows 7 vm with iso on vmware instead using virtual machine github part in your video ?

kabyg
Автор

Really helpfull video!
Something i would like ask is how to turn on virtualization inside ubuntu host? Thats the reason can't clone the win7x64base in 20:03...

theodoremr
Автор

Amazing video, I was strugling to get cuckoo up and running (mostly because of the different versions referenced in the docos). Any good KB article what guides me to spin up a linux VM instance inside cuckoo to analyze Linux/ELF like malware? Thanks.

RomanAArias-yyrw
Автор

if i do the network routing for the internet like the video and have the network for the win7 vm set host adapter only. will it put other devices on my actual network at risk if i run wannacry inside cuckoo?
great video yours is the best one Ive watch !

GEORGECAR
Автор

sudo apt-get install mongodb -y doesn't seem to work because that package has no valid installation candidate. Any alternatives?

load
Автор

Thank you for this awesome guide! By the way: How can I automate the process of rebooting cuckoo after unwanted VM restart (power off and etc)?

DamikoMu
Автор

What are the versions used for mongodb and virtualbox. I tried mongodb version 4 and 5 with vbox v5.2 but there's a dependency conflict as mongodb uses libcurl4 and virtualbox uses libcurl3. I tried a couple of solutions online but none of it seemed to work.

ily_e
Автор

hello

when i run

sudo setcap cap_net_raw, cap_net_admin=eip /usr/sbin/tcpdump

get this reply when

Failed to set capabilities on file `/usr/sbin/tcpdump' (Invalid argument)
The value of the capability argument is not permitted for a file. Or the file is not a regular (non-symlink) file

I have tried all kinds of methods on the Internet and can't solve this problem
Could you please help me?

brave
Автор

The Vnet box stuff kind of goes over my head, do you need your original ubuntu vm running in a dmz environment?

thomashope
Автор

hello, i have this error after running cuckoo : Error checking for the latest Cuckoo version: ("bad handshake: Error([('SSL routines', 'tls_process_server_certificate', 'certificate verify failed')], )", )!

cybersecurity-for-all
Автор

thanks for the informative video :), i was thinking maybe we can do an automated analysis for email attachment i remember saw it somewhere online it was an awesome project.

AkAk-jvig
Автор

Hi! I have a problem, after creating win7 image: vmcloak init --verbose --win7x64 win7x64base --cpus 2 --ramsize 2048
I got this loop error message with debug mode: DEBUG:vmcloak.vm:Running command: ['/usr/bin/VBoxManage', 'showvminfo', u'win7x64base', '--machinereadable']
Can u help me? Im using Ubuntu same as you on the virtualbox. Im waited for 30 minutes and nothing happend.

valeriybaybekov
Автор

Hello, thank you for your video. how can install cuckoo with python 3?

ehabalmasri
Автор

I'm hitting a lot of errors with the commands as shown in the github link. Are they still correct? I'm on Ubuntu 21.10.

SoulJah