CAPESandbox / community
Community modules for CAPE Sandbox
☆86Updated last week
Related projects ⓘ
Alternatives and complementary repositories for community
- Collection of rules created using YARA-Signator over Malpedia☆113Updated last week
- Automatic YARA rule generation for Malpedia☆156Updated 2 years ago
- c2 traffic☆187Updated last year
- ☆123Updated 3 years ago
- YARA rule metadata specification and validation utility / Spécification et validation pour les règles YARA☆98Updated 2 months ago
- ☆96Updated 4 years ago
- ☆92Updated this week
- Random hunting ordiented yara rules☆95Updated last year
- A guide on how to write fast and memory friendly YARA rules☆126Updated last year
- A tool for de-obfuscating PowerShell scripts☆66Updated 5 years ago
- Repository containing IOCs, CSV and MISP JSON from our blogs☆79Updated 3 years ago
- YARA rule analyzer to improve rule quality and performance☆93Updated last year
- I wanted to call this repo "Nuclear Football Codes". I was outvoted..☆68Updated last week
- Research indicators and detection rules☆66Updated last year
- A mapping of used malware names to commonly known family names☆61Updated last year
- Personal compilation of APT malware from whitepaper releases, documents and own research☆255Updated 5 years ago
- JPCERT/CC public YARA rules repository☆104Updated 5 months ago
- Malware similarity platform with modularity in mind.☆76Updated 3 years ago
- Malware Configuration Extraction Modules☆47Updated last year
- Security ML models encoded as Yara rules☆211Updated last year
- Various Yara signatures (possibly to be included in a release later).☆85Updated 5 years ago
- This tool maps a file's behavior on MITRE ATT&CK matrix.☆57Updated 4 years ago
- BinSequencer is a script designed to find a common pattern of bytes within a set of samples and generate a YARA rule from the identified…☆74Updated 2 years ago
- MWDB exercises☆19Updated 5 months ago
- Cuckoo running in a nested hypervisor☆128Updated 4 years ago
- File analysis and management framework.☆72Updated last year
- Ursnif beacon decryptor☆27Updated last year
- Unprotect is a python tool for parsing PE malware and extract evasion techniques.☆111Updated last year
- Telsy CTI Research Team☆57Updated 3 years ago
- Hollowfind is a Volatility plugin to detect different types of process hollowing techniques used in the wild to bypass, confuse, deflect …☆131Updated 2 years ago