EFForg / yaya
Yet Another Yara Automaton - Automatically curate open source yara rules and run scans
☆271Updated last year
Alternatives and similar repositories for yaya:
Users that are interested in yaya are comparing it to the libraries listed below
- User guide of MISP☆266Updated 2 months ago
- Chain Reactor is an open source framework for composing executables that simulate adversary behaviors and techniques on Linux endpoints.☆303Updated 4 months ago
- A collection of YARA rules we wish to share with the world, most probably referenced from http://blog.inquest.net.☆372Updated 2 years ago
- MISP trainings, threat intel and information sharing training materials with source code☆403Updated last month
- DFIRTrack - The Incident Response Tracking Application☆492Updated 6 months ago
- A set of Zeek scripts to detect ATT&CK techniques.☆581Updated 8 months ago
- IOC from articles, tweets for archives☆313Updated last year
- A framework for orchestrating forensic collection, processing and data export☆307Updated this week
- Simple Bash IOC Scanner☆725Updated 3 years ago
- The Cold Disk Quick Response (CDQR) tool is a fast and easy to use forensic artifact parsing tool that works on disk images, mounted driv…☆336Updated 2 years ago
- Collecting & Hunting for IOCs with gusto and style☆237Updated 3 years ago
- Yara Rule Analyzer and Statistics☆370Updated 2 years ago
- A threat hunting / data analysis environment based on Python, Pandas, PySpark and Jupyter Notebook.☆241Updated 3 years ago
- Malware repository component for samples & static configuration with REST API interface.☆341Updated this week
- A Python package to interact with the Mitre ATT&CK Framework☆474Updated last year
- 🚌 Threat Bus – A threat intelligence dissemination layer for open-source security tools.☆262Updated 2 years ago
- Repository of YARA rules made by Trellix ATR Team☆581Updated this week
- Splunk Boss of the SOC version 2 dataset.☆375Updated 2 years ago
- simple YARA-based IOC scanner☆169Updated last month
- Distributed malware processing framework based on Python, Redis and S3.☆403Updated 2 months ago
- YARA malware query accelerator (web frontend)☆422Updated this week
- Online hash checker for Virustotal and other services☆822Updated 10 months ago
- ☆213Updated last year
- MISP Docker (XME edition)☆283Updated last year
- ReversingLabs YARA Rules☆803Updated last week
- ☆171Updated 8 months ago
- A collection of red team and adversary emulation resources developed and released by MITRE.☆498Updated 3 years ago
- Awesome VirusTotal Intelligence Search Queries☆332Updated last year
- Splunk code (SPL) for serious threat hunters and detection engineers.☆273Updated last year
- CyLR - Live Response Collection Tool☆669Updated 2 years ago