SentineLabs / macos-ttps-yaraLinks
A ruleset to find potentially malicious code in macOS malware samples
☆41Updated 2 years ago
Alternatives and similar repositories for macos-ttps-yara
Users that are interested in macos-ttps-yara are comparing it to the libraries listed below
Sorting:
- Rules shared by the community from 100 Days of YARA 2025☆37Updated 9 months ago
- ForgeArmory provides TTPs that can be used with the TTPForge (https://github.com/facebookincubator/ttpforge).☆117Updated last year
- Repository that contains a set of purposefully erroneous Yara rules.☆60Updated 3 months ago
- macOS forensic timeline generator using the analysis result DBs of mac_apt☆95Updated 2 years ago
- A zero dependency and customizable Python library for scanning Windows and Linux process memory.☆66Updated last year
- ☆166Updated last month
- machofile is a module to parse Mach-O binary files☆89Updated 3 months ago
- An LLM and OCR based Indicator of Compromise Extraction Tool☆37Updated 11 months ago
- ☆51Updated 2 months ago
- Rules Shared by the Community from 100 Days of YARA 2023☆78Updated 2 years ago
- My very personal and opinionatedly organized infosec/cybersec sources in one OPML file☆58Updated 2 years ago
- Lightweight Python-Based Malware Analysis Pipeline☆36Updated 2 months ago
- pocket guide for core detection engineering concepts☆30Updated 2 years ago
- A YARA & Malware Analysis Toolkit written in Rust.☆56Updated last month
- ☆41Updated 11 months ago
- The Event Maturity Matrix (EMM) is a comprehensive framework that provides clarity regarding the capabilities and nuances of SaaS audit l…☆30Updated 5 months ago
- CyberChef - Detection Engineering, TI, DFIR, Malware Analysis Edition☆65Updated 3 years ago
- Run Sigma detection rules on logs from the new MacOS EndpointSecurity Framework☆20Updated 4 years ago
- Repository of tools and resources for analyzing Docker containers☆71Updated 2 years ago
- C2 Active Scanner☆60Updated last year
- FLARE floss applied to all unpacked+dumped samples in Malpedia, pre-processed for further use.☆62Updated 5 months ago
- Norimaci is a simple and lightweight malware analysis sandbox for macOS☆70Updated 5 years ago
- ☆99Updated 2 weeks ago
- Detection Engineering with YARA☆87Updated last year
- Linux #rootkit and #malware revealer