Python 3 library to build YARA rules.
☆13Oct 24, 2021Updated 4 years ago
Alternatives and similar repositories for yarabuilder
Users that are interested in yarabuilder are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- A tool to help malware analysts signature unique parts of RTF documents☆28Jan 5, 2026Updated 2 months ago
- Indicators of compromise relating to our report on APT10's targeting of global MSPs☆10Sep 26, 2017Updated 8 years ago
- My collection of scripts for Ghidra (https://github.com/NationalSecurityAgency/ghidra)☆10Sep 13, 2020Updated 5 years ago
- Indicators of compromise, YARA rules, and Python scripts to supplement the SANS CTI Summit 2021 talk: "xStart when you're ready".☆14Jul 12, 2021Updated 4 years ago
- Low budget VirusTotal Intelligence Cosplay☆20Jan 6, 2022Updated 4 years ago
- Repository of tools, YARA rules, and code-snippets from Stairwell's research team.☆23Jan 31, 2024Updated 2 years ago
- Local Transform Wrapper for Maltego☆11May 24, 2016Updated 9 years ago
- Synapse Rapid Power-up for SinkDB☆11Jun 24, 2025Updated 9 months ago
- An add-on for Kodi to play random videos from a variety of lists.☆10May 9, 2023Updated 2 years ago
- A Threat hunter's playbook to aid the development of techniques and hypothesis for hunting campaigns.☆14Jul 18, 2018Updated 7 years ago
- Local GOLANG Transform Wrapper for Maltego☆17Feb 25, 2016Updated 10 years ago
- Automatically exported from code.google.com/p/verify-sigs☆18Sep 2, 2016Updated 9 years ago
- List of Awesome Vertex Synapse Resources☆28Aug 6, 2024Updated last year
- Visually inspect and force decode YARA and regex matches found in both binary and text data with colors. Lots of colors.☆148Feb 1, 2026Updated last month
- YARI is an interactive debugger for YARA Language.☆90Sep 10, 2025Updated 6 months ago
- Port of Mandiant ShellcodeHashes plugin from IDA to BinaryNinja☆11Jul 24, 2024Updated last year
- Golang based web service to scan files with yara rules☆25Jul 6, 2017Updated 8 years ago
- Resources for SANS CTI Summit 2021 presentation☆104Nov 8, 2023Updated 2 years ago
- OpenCTI Add-On for Splunk☆13Jan 13, 2026Updated 2 months ago
- VSCode extension for the YARA pattern matching language☆63Jan 10, 2024Updated 2 years ago
- 🐐 Intrusion Detection System☆17Jan 10, 2023Updated 3 years ago
- Maltego local and server integration for OpenCTI☆31Mar 6, 2026Updated 2 weeks ago
- Fixes and patches☆20Dec 3, 2020Updated 5 years ago
- Steezy - Ghetto Yara Generation☆15Mar 27, 2023Updated 2 years ago
- a quick python helper that generates a big.js presentation☆27Nov 1, 2024Updated last year
- analysis of visual basic code☆47Mar 25, 2018Updated 7 years ago
- Lightweight, secure and login like console display manager for X☆16Nov 1, 2021Updated 4 years ago
- Module for FoundryVTT that scales the grid.☆10Nov 7, 2023Updated 2 years ago
- Triage automation for suspect URLs☆13Jul 23, 2019Updated 6 years ago
- Private Search Set (PSS) is an extension to standard Bloom filter or a standalone hash file to describe and share private set.☆16Jan 10, 2025Updated last year
- ☆15Aug 31, 2023Updated 2 years ago
- Splunk integration with MISP☆12Apr 14, 2018Updated 7 years ago
- Simple Docker Honeypot server emulating small snippets of the Docker HTTP API☆33Oct 6, 2020Updated 5 years ago
- VB Exe Parser is an IDA script written in Python. This script will help you to parse VB program internal structures. It can find: Event, …