Pandora

Pandora is an analysis framework to discover if a file is suspicious and conveniently show the results

Cybersecurity & Ethical HackingPythonAGPL-3.0

Abstract

Pandora is an open-source Cybersecurity & Ethical Hacking project. Pandora is an analysis framework to discover if a file is suspicious and conveniently show the results. It is built using Python. Key capabilities include: Flexible and open source framework to integrate external tools for checking files; A convenient preview module to allow a safe preview for end-users; A way to share results on-demand by the end-users. The complete source code is publicly available on GitHub under the GNU Affero General Public License v3.0, making it a useful reference for students building a Cybersecurity & Ethical Hacking mini project or final-year project.

1. Introduction

Pandora is an analysis framework to discover if a file is suspicious and conveniently show the results.

2. Objective

Pandora is an analysis framework to discover if a file is suspicious and conveniently show the results

This project demonstrates how Python can be applied to a real-world Cybersecurity & Ethical Hacking problem.

3. Key Features / Modules

  • Flexible and open source framework to integrate external tools for checking files.
  • A convenient preview module to allow a safe preview for end-users.
  • A way to share results on-demand by the end-users.
  • Complete standalone open source solution which can allow any organisation to run their own without leaking information or sensitive documents.
  • Analysis modules included are hashlookup, hybridanalysis, irma, joesandbox, malwarebazaar, msodde, mwdb, ole, virustotal, xmldeobfuscator, yara.

4. Technology Stack

Python

5. System Requirements

General requirements for this technology stack — check the README for exact versions.

  • Python 3.8 or later
  • pip / virtualenv for dependencies
  • VS Code, PyCharm or Jupyter Notebook
  • Git (to clone the repository)

6. Installation & Setup

git clone https://github.com/pandora-analysis/pandora.git
cd pandora
sudo apt-get update
sudo apt install git gcc g++ make cmake autoconf automake libtool python3 libssl-dev
git clone --recursive  https://github.com/apache/kvrocks.git kvrocks
cd kvrocks
git checkout 2.10
./x.py build -j4
cd ..
.
├── valkey  => compiled valkey
├── kvrocks => compiled kvrocks
└── pandora => not installed pandora yet
cd pandora  # if you're not already in the directory
poetry install

Full setup instructions are in the project README.

7. Future Enhancements

Suggested extensions you can add to make this your own project.

  • Add logging and alert notifications (email / Telegram)
  • Write a threat model document for the tool
  • Package it with Docker for safe lab testing

8. Viva / Review Questions

Common questions examiners ask for projects in this domain.

  1. Which threat or attack does this project defend against?
  2. What detection or protection technique is used and what are its limits?
  3. How are false positives and false negatives handled?
  4. Which cryptographic algorithms or security standards are involved?
  5. What legal and ethical rules apply when testing a tool like this?

9. Source Code & License

This project is developed by pandora-analysis and published on GitHub under the GNU Affero General Public License v3.0. Please follow the license terms and credit the original author when you use or modify this code.

Want to build this as your internship project?

Work on a Cybersecurity & Ethical Hacking project like this with mentor guidance, weekly reviews and an internship certificate from Training Trains, Erode — online or offline.

Apply for Cybersecurity & Ethical Hacking Internship