EFForg / yaya
Yet Another Yara Automaton - Automatically curate open source yara rules and run scans
☆271Updated last year
Alternatives and similar repositories for yaya:
Users that are interested in yaya are comparing it to the libraries listed below
- User guide of MISP☆266Updated last month
- Chain Reactor is an open source framework for composing executables that simulate adversary behaviors and techniques on Linux endpoints.☆300Updated 3 months ago
- simple YARA-based IOC scanner☆166Updated last week
- A collection of YARA rules we wish to share with the world, most probably referenced from http://blog.inquest.net.☆370Updated 2 years ago
- MISP trainings, threat intel and information sharing training materials with source code☆400Updated last week
- Collecting & Hunting for IOCs with gusto and style☆237Updated 3 years ago
- A modular OSINT honeypot for blue teamers☆331Updated last year
- A set of Zeek scripts to detect ATT&CK techniques.☆576Updated 7 months ago
- Sigma rules from Joe Security☆206Updated 3 months ago
- Yara Rule Analyzer and Statistics☆365Updated 2 years ago
- ☆169Updated 7 months ago
- Misc Threat Hunting Resources☆373Updated 2 years ago
- CyLR - Live Response Collection Tool☆663Updated 2 years ago
- Sublime rules for email attack detection, prevention, and threat hunting.☆274Updated this week
- A datasource assessment on an event level to show potential coverage or the MITRE ATT&CK framework☆350Updated 4 years ago
- A list of my personal projects☆174Updated 2 years ago
- Extension to Cuckoo Sandbox open source projects, adds support to AWS cloud functionalities and enables running emulation on auto-scaling…☆136Updated 2 years ago
- 🚌 Threat Bus – A threat intelligence dissemination layer for open-source security tools.☆262Updated last year
- Distributed malware processing framework based on Python, Redis and S3.☆401Updated 3 weeks ago
- Set of Yara rules for finding files using magics headers☆136Updated 4 years ago
- Deception based detection techniques mapped to the MITRE’s ATT&CK framework☆289Updated 7 years ago
- Repository of YARA rules made by Trellix ATR Team☆576Updated last year
- DFIRTrack - The Incident Response Tracking Application☆491Updated 5 months ago
- MISP Docker (XME edition)☆283Updated last year
- ☆199Updated last year
- Main Build directory☆178Updated 5 years ago
- Detecting ATT&CK techniques & tactics for Linux☆258Updated 4 years ago
- Automatically create YARA rules from malicious documents.☆208Updated 2 years ago
- IOC from articles, tweets for archives☆313Updated last year
- Simple Bash IOC Scanner☆717Updated 3 years ago