EFForg / yaya
Yet Another Yara Automaton - Automatically curate open source yara rules and run scans
☆280Updated last year
Alternatives and similar repositories for yaya
Users that are interested in yaya are comparing it to the libraries listed below
Sorting:
- Chain Reactor is an open source framework for composing executables that simulate adversary behaviors and techniques on Linux endpoints.☆311Updated last month
- A collection of YARA rules we wish to share with the world, most probably referenced from http://blog.inquest.net.☆375Updated 3 years ago
- User guide of MISP☆267Updated 4 months ago
- simple YARA-based IOC scanner☆169Updated 3 months ago
- Yara Rule Analyzer and Statistics☆373Updated 2 years ago
- A threat hunting / data analysis environment based on Python, Pandas, PySpark and Jupyter Notebook.☆246Updated 3 years ago
- MISP trainings, threat intel and information sharing training materials with source code☆407Updated last week
- 🚌 Threat Bus – A threat intelligence dissemination layer for open-source security tools.☆261Updated 2 years ago
- Simple Bash IOC Scanner☆731Updated 3 years ago
- DFIRTrack - The Incident Response Tracking Application☆498Updated 8 months ago
- ☆173Updated 10 months ago
- Collecting & Hunting for IOCs with gusto and style☆238Updated 3 years ago
- A live dashboard for a real-time overview of threat intelligence from MISP instances☆202Updated last year
- An open source framework for enterprise level automated analysis.☆396Updated 2 years ago
- A set of Zeek scripts to detect ATT&CK techniques.☆587Updated 10 months ago
- Deception based detection techniques mapped to the MITRE’s ATT&CK framework☆289Updated 7 years ago
- A framework for orchestrating forensic collection, processing and data export☆313Updated last week
- A Python package to interact with the Mitre ATT&CK Framework☆477Updated last year
- Automated Use Case Testing☆167Updated 7 years ago
- Online hash checker for Virustotal and other services☆825Updated last month
- IOC from articles, tweets for archives☆313Updated last year
- YARA malware query accelerator (web frontend)☆427Updated last month
- Automatically create YARA rules from malicious documents.☆211Updated 2 years ago
- Cross-platform Yara scanner written in Go☆329Updated 2 years ago
- Repository of YARA rules made by Trellix ATR Team☆595Updated last month
- The Cold Disk Quick Response (CDQR) tool is a fast and easy to use forensic artifact parsing tool that works on disk images, mounted driv…☆337Updated 2 years ago
- Main Build directory☆179Updated 6 years ago
- Distributed malware processing framework based on Python, Redis and S3.☆419Updated last month
- Awesome VirusTotal Intelligence Search Queries☆332Updated last year
- Set of Yara rules for finding files using magics headers☆137Updated 4 years ago