CyberDefenses / CDI_yaraLinks
A collection of YARA rules for public use. Built from information in intelligence profiles, dossiers and file work.
☆20Updated 2 years ago
Alternatives and similar repositories for CDI_yara
Users that are interested in CDI_yara are comparing it to the libraries listed below
Sorting:
- Yara rules for quick reverse engineering of malware.☆19Updated 10 years ago
- Malice Yara Plugin☆30Updated 6 years ago
- stoQ Public Plugins☆71Updated 2 years ago
- A curated list of awesome YARA rules, tools, and people.☆33Updated 2 years ago
- IOC Management and Visualization Tool☆48Updated 3 years ago
- My Yara Rules Collection☆53Updated 10 years ago
- ☆82Updated 9 years ago
- ☆37Updated 9 years ago
- A mapping of used malware names to commonly known family names☆62Updated 2 years ago
- PE Import Hash Generator☆79Updated 8 years ago
- IOC (Indicator of Compromise) Extractor: a program to help extract IOCs from text files.☆134Updated 10 years ago
- ☆154Updated 7 years ago
- Python IOC Editor☆65Updated 10 years ago
- Hunting IOCs all day every day...☆87Updated 2 years ago
- Extract common Windows artifacts from source images and VSCs☆64Updated 4 years ago
- Messing around with clamav sigs☆26Updated 5 years ago
- VirusTotal Intelligence Notification Puller☆28Updated 9 years ago
- A utility repo to assist with converting between MISP and STIX formats☆69Updated 5 years ago
- Yara rules for detecting malware☆23Updated 5 months ago
- A Yara rule generator for finding related samples and hunting☆162Updated 3 years ago
- A Windows Event Processing Utility☆47Updated 7 years ago
- Event Log Analysis Tools☆31Updated 9 years ago
- InvestigationPlaybookSpec☆71Updated 8 years ago
- Mystique may be used to discover infection markers that can be used to vaccinate endpoints against malware. It receives as input a malici…☆82Updated 8 years ago
- Example programs used in the automating DFIR series☆63Updated 6 years ago
- Tool to extract indicators of compromise from security reports in PDF format☆75Updated last year
- Validates yara rules and tries to repair the broken ones.☆41Updated 5 years ago
- An ICAP Server with yara scanner for URL and content.☆58Updated last year
- Python API bindings for FireEye Products☆13Updated 4 years ago
- Some dfir stuff☆31Updated 4 years ago