InQuest / microsoft-office-macro-clusteringLinks
☆19Updated last year
Alternatives and similar repositories for microsoft-office-macro-clustering
Users that are interested in microsoft-office-macro-clustering are comparing it to the libraries listed below
Sorting:
- A script that extracts embedded images from Office Open XML (OOXML) documents and generates image hash similarity graphs that cluster vis…☆21Updated 3 years ago
- Collection of YARA signatures from individual research☆45Updated last year
- A collection of Indicators of Compromise (IoCs), most aligning with samples derived from the signatures in the YARA-Signatures repo☆30Updated 5 years ago
- Random hunting ordiented yara rules☆97Updated 2 years ago
- ConventionEngine - A Yara Rulepack for PDB Path Hunting☆37Updated 2 years ago
- Factual-rules-generator is an open source project which aims to generate YARA rules about installed software from a machine.☆76Updated 3 years ago
- Utility for parsing Bro log files into CSV or JSON format☆41Updated 2 years ago
- Scans a malware file and lists down the related MBC (Malware Behavior Catalog) details.☆22Updated 3 years ago
- YARA Language Server☆73Updated 2 weeks ago
- VSCode extension for the YARA pattern matching language☆63Updated last year
- Yara rules☆21Updated 2 years ago
- Knowledge base workflow management for YARA rules and C2 artifacts (IP, DNS, SSL) (ALPHA STATE AT THE MOMENT)☆103Updated 3 months ago
- Unprotect is a python tool for parsing PE malware and extract evasion techniques.☆118Updated 2 years ago
- Generate YARA rules for OOXML documents.☆38Updated 2 years ago
- ☆23Updated 2 years ago
- Analysis of file (doc, pdf, exe, ...) in deep (emmbedded file(s)) with clamscan and yara rules☆50Updated 2 years ago
- A Python malware analysis library.☆50Updated 2 years ago
- ☆27Updated 3 years ago
- Tool for analysis of Windows Prefetch files☆26Updated 6 years ago
- Merge all Yara rules from official Yara github repository in one .yar file☆30Updated 7 years ago
- Modular malware analysis artifact collection and correlation framework☆53Updated last year
- ☆41Updated 3 years ago
- A tool to help malware analysts signature unique parts of RTF documents☆29Updated 9 months ago
- Repository of tools, YARA rules, and code-snippets from Stairwell's research team.☆23Updated last year
- Yara Based Detection Engine for web browsers☆49Updated 4 years ago
- A python script that allows a researcher to merge databases from Malshare and Malware Bazaar to created enrriched datasets from SIEM tool…☆28Updated 5 years ago
- Automatic detection engineering technical state compliance☆55Updated last year
- Conceptual Methods for Finding Commonalities in Macho Files☆12Updated last year
- This repository regroups the Yara Rules for the Unprotect Project☆26Updated 4 years ago
- This tool maps a file's behavior on MITRE ATT&CK matrix.☆59Updated 5 years ago