Neo23x0 / YARA-Performance-GuidelinesLinks
A guide on how to write fast and memory friendly YARA rules
☆144Updated 4 months ago
Alternatives and similar repositories for YARA-Performance-Guidelines
Users that are interested in YARA-Performance-Guidelines are comparing it to the libraries listed below
Sorting:
- YARA rule analyzer to improve rule quality and performance☆102Updated 2 months ago
- Elastic Security Labs releases☆68Updated last week
- Rules Shared by the Community from 100 Days of YARA 2023☆77Updated 2 years ago
- JPCERT/CC public YARA rules repository☆109Updated 6 months ago
- YARA rule metadata specification and validation utility / Spécification et validation pour les règles YARA☆104Updated last month
- A YARA rules repository continuously updated for monitoring the old and new threats from articles, incidents responses ...☆139Updated last year
- Collection of rules created using YARA-Signator over Malpedia☆131Updated 7 months ago
- 100 Days of YARA to be updated with rules & ideas as the year progresses☆60Updated 2 years ago
- Rules shared by the community from 100 Days of YARA 2024☆85Updated 5 months ago
- ☆131Updated 3 weeks ago
- Random hunting ordiented yara rules☆97Updated 2 years ago
- The Windows Malware Analysis Reversing Core Tools☆95Updated 4 years ago
- ☆250Updated last year
- Automatic YARA rule generation for Malpedia☆161Updated 2 years ago
- A repository hosting example goodware evtx logs containing sample software installation and basic user interaction☆79Updated last month
- c2 traffic☆189Updated 2 years ago
- A Cobalt Strike Scanner that retrieves detected Team Server beacons into a JSON object☆167Updated 2 years ago
- ☆68Updated 4 months ago
- Script for parsing Symantec Endpoint Protection logs, VBNs, and ccSubSDK database.☆65Updated 2 years ago
- Use YARA rules on Time Travel Debugging traces☆91Updated last year
- Cobalt Strike Beacon configuration extractor and parser.☆153Updated 3 years ago
- Community modules for CAPE Sandbox☆100Updated last week
- A Jupyter notebook to assist with the analysis of the output generated from Volatility memory extraction framework.☆95Updated 2 years ago
- ☆87Updated last year
- Python based CLI for MalwareBazaar☆37Updated 7 months ago
- A python script developed to process Windows memory images based on triage type.☆262Updated last year
- ☆130Updated last year
- Scripts and tools accompanying HP Threat Research blog posts and reports.☆50Updated last year
- Memory Baseliner is a script that can compare two windows memory images or perform frequency of occurrence / data stacking analysis on mu…☆54Updated last year
- A golang CLI tool to download malware from a variety of sources.☆146Updated last week