Neo23x0 / xorex
XOR Key Extractor
☆50Updated 8 months ago
Alternatives and similar repositories for xorex:
Users that are interested in xorex are comparing it to the libraries listed below
- A YARA Rule Performance Measurement Tool☆59Updated last year
- Random hunting ordiented yara rules☆95Updated 2 years ago
- Simple yara rule manager☆66Updated 2 years ago
- Malware similarity platform with modularity in mind.☆78Updated 3 years ago
- Various capabilities for static malware analysis.☆77Updated 7 months ago
- Collection of YARA signatures from individual research☆44Updated last year
- This repository aims to collect and document indicators from the different C2's listed in the C2-Matrix☆72Updated 3 years ago
- VSCode extension for the YARA pattern matching language☆64Updated last year
- Generate YARA rules for OOXML documents.☆38Updated last year
- evtx2json extracts events of interest from event logs, dedups them, and exports them to json.☆41Updated 3 years ago
- A repo to document API functions mapped to security events across diverse platforms☆75Updated 5 years ago
- Generate a Yara rule to find base64-encoded files containg a specific keyword☆40Updated 6 years ago
- Detect possible sysmon logging bypasses given a specific configuration☆108Updated 6 years ago
- Steezy - Ghetto Yara Generation☆15Updated 2 years ago
- Honeybag helps you to create 'bait archive' with any folders and files, notify you if someone accesses it☆16Updated 4 years ago
- C# User Simulation☆32Updated 2 years ago
- Scripts and tools accompanying HP Threat Research blog posts and reports.☆50Updated last year
- ConventionEngine - A Yara Rulepack for PDB Path Hunting☆38Updated 2 years ago
- Standardized Malware Analysis Tool☆52Updated 4 years ago
- Imphash-like calculation on Golang binaries☆49Updated 2 years ago
- Repository with selected IOCs and YARA rules for threat hunting.☆35Updated 3 months ago
- pollen - A command-line tool for interacting with TheHive☆35Updated 5 years ago
- A list of IOCs applicable to PoshC2☆24Updated 4 years ago
- TA505 unpacker Python 2.7☆47Updated 4 years ago
- Factual-rules-generator is an open source project which aims to generate YARA rules about installed software from a machine.☆76Updated 3 years ago
- Tool to decompress data from Windows 10 page files and memory dumps, that has been compressed by the Windows 10 memory manager.☆50Updated 6 years ago
- Links to malware-related YARA rules☆15Updated 2 years ago
- Merge all Yara rules from official Yara github repository in one .yar file☆28Updated 6 years ago
- Yara rules☆21Updated 2 years ago
- Carbon Black Response IR tool☆53Updated 4 years ago