Collection of interesting Yara Rules
☆18Aug 19, 2026Updated last week
Alternatives and similar repositories for YaraRules
Users that are interested in YaraRules are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- PPLReaper is a Windows UNSIGNED kernel driver + userland companion tool designed to inspect and manipulate Protected Process Light (PPL) …☆24Mar 4, 2026Updated 5 months ago
- Novel Windows process injection: assembles existing open handles (process & thread), natural RWX regions, and special user APC (NtQueueAp…☆74Feb 17, 2026Updated 6 months ago
- Bash Script with 4 ways to get persistence in Linux systems WITHOUT root permisions☆17Aug 17, 2022Updated 4 years ago
- Bypassing File Upload Restriction using Magic Bytes☆22Jul 4, 2022Updated 4 years ago
- Simple C++ Reverse Shell☆13Nov 22, 2022Updated 3 years ago
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- Interactive program for loading AES encrypted shellcode with Dynamic Invocation, and interactive .NET assemblies in memory.☆13Mar 16, 2022Updated 4 years ago
- Used to AES encrypt shellcode, can take password or use built in default should be used with Iron Injector to generate and execute shellc…☆15Mar 18, 2022Updated 4 years ago
- AdminX it's a Malware to execute process as some users from a Windows OS☆11May 4, 2023Updated 3 years ago
- C++ keylogger to save all the keys pressed into a local txt file☆11Apr 6, 2023Updated 3 years ago
- NØW is a word-based shellcode encoding and obfuscation tool that transforms raw shellcode bytes into natural-looking English prose.☆78Jun 24, 2026Updated 2 months ago
- Simple shellcode injection in Nim encrypted in XOR☆22Aug 21, 2023Updated 3 years ago
- Heartbleed OpenSSL exploit☆14Apr 11, 2014Updated 12 years ago
- Solemn is a lightweight command-line tool for Windows that automates adding drivers to the HVCI (HvciDisallowedImages) custom blocklist☆25May 2, 2026Updated 3 months ago
- Custom Python shellcode encryptor and obfuscator☆15Jul 31, 2025Updated last year
- End-to-end encrypted email - Proton Mail • AdSpecial offer: 40% Off Yearly / 80% Off First Month. All Proton services are open source and independently audited for security.
- This project enables malware to resurrect and remain hidden even after termination, using a User-Mode Program and Kernel-Mode Driver as p…☆10Jan 7, 2025Updated last year
- SSH Bruteforce Basic Script created with C++ to Linux☆10Jan 28, 2023Updated 3 years ago
- Post-Exploitation Tool to Steal MySQL Data, and with persistence extract all data from MySQL table every time that Windows are opened wit…☆14Apr 2, 2023Updated 3 years ago
- Find Windows RWX Memory Regions depending on the memory space needed☆17Nov 26, 2023Updated 2 years ago
- Toolkit of Projects to attack and evade Event Trace for Windows☆26Aug 28, 2025Updated last year
- Collection of Win32 with C++/Assembly for Hooking, Patch and Reversing PE file☆18Nov 7, 2022Updated 3 years ago
- Forensic tool for extracting and analyzing Google DriveFS cached files and metadata.☆23May 9, 2025Updated last year
- Very basic Web created with HTML and JavaScript to create Online Payload to do Reverse Shells☆12Oct 12, 2022Updated 3 years ago
- PDF Icon File Type Spoofer☆16Jul 8, 2024Updated 2 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- RDPCredentialStealer it's an implant that steal credentials provided by users in RDP using API Hooking with Detours in C++☆267Mar 11, 2026Updated 5 months ago
- ☆19May 22, 2024Updated 2 years ago
- SharpReg is a simple code set to interact with the Remote Registry service api and is compatible with Cobalt Strike.☆27Apr 12, 2020Updated 6 years ago
- Automate All Pivoting System Enumeration with this Bash Script☆13Nov 7, 2022Updated 3 years ago
- PowerShell toolkit for AMSI/Defender detection-boundary analysis and static malware triage maps byte offsets to detection triggers, plus …☆83Jul 28, 2026Updated last month
- ☆63Feb 12, 2026Updated 6 months ago
- Simple Python Modular Script to Broke Web Logins☆15Oct 7, 2022Updated 3 years ago
- Rat Inject is C++ Executable to gain Undetectable Persistence in Windows via 4 Registry Keys☆32Nov 29, 2022Updated 3 years ago
- WiFi arsenal☆17May 19, 2020Updated 6 years ago
- Simple, predictable pricing with DigitalOcean hosting • AdAlways know what you'll pay with monthly caps and flat pricing. Enterprise-grade infrastructure trusted by 600k+ customers.
- Windows/Linux LSA credential extractor for lsass.dmp minidumps. Targets Windows 11 24H2/25H2/26H1 and Windows Server 2025. Pure Win32, no…☆37May 14, 2026Updated 3 months ago
- A small commented POC for removing API hooks placed by AV/EDR.☆34Jun 12, 2020Updated 6 years ago
- ☆19Jun 25, 2024Updated 2 years ago
- Caster - The ECP manipulator for Roku and the ghost in the Cast (Google Chromecast)☆14Jun 10, 2024Updated 2 years ago
- 为知笔记批量导出☆11Sep 1, 2022Updated 3 years ago
- Bash script that creates directories and files to organize a pentesting☆12May 26, 2021Updated 5 years ago
- Multi-component Remote Access Trojan: C++ client (victim), C# server, and Angular frontend.☆66Jun 22, 2026Updated 2 months ago