SigmaHQ / sigmahq.github.ioLinks
Official Website Of The Sigma Project
☆21Updated this week
Alternatives and similar repositories for sigmahq.github.io
Users that are interested in sigmahq.github.io are comparing it to the libraries listed below
Sorting:
- A specification and style guide for YARA rules☆66Updated last year
- SubCrawl is a modular framework for discovering open directories, identifying unique content through signatures and organizing the data w…☆55Updated last year
- Detection Engineering with YARA☆87Updated 2 years ago
- Rapid7 Labs operates as the division of Rapid7 focused on threat research. It is renowned for providing comprehensive threat intelligence…☆76Updated last month
- Yara Rules for Modern Malware☆78Updated last year
- A C# based tool for analysing malicious OneNote documents☆118Updated 2 years ago
- A simple tool designed to create Atomic Red Team tests with ease.☆49Updated 10 months ago
- A proof-of-concept re-assembler for reverse VNC traffic.☆24Updated 2 years ago
- Rules Shared by the Community from 100 Days of YARA 2023☆78Updated 2 years ago
- Baseline a Windows System against LOLBAS☆70Updated last week
- ☆84Updated last year
- Linux #rootkit and #malware revealer☆30Updated last year
- The LOLBins CTI-Driven (Living-Off-the-Land Binaries Cyber Threat Intelligence Driven) is a project that aims to help cyber defenders und…☆126Updated last year
- Rules shared by the community from 100 Days of YARA 2025☆38Updated last month
- LOLESXi is a curated compilation of binaries/scripts available in VMware ESXi that are were used to by adversaries in their intrusions. T…☆143Updated last week
- Detection rule validation☆40Updated 2 years ago
- A repository hosting example goodware evtx logs containing sample software installation and basic user interaction☆86Updated last month
- Malware Muncher is a proof-of-concept Python script that utilizes the Frida framework for binary instrumentation and API hooking, enablin…☆45Updated 2 years ago
- ☆37Updated last year
- VTC - Velociraptor Timeline Creator☆19Updated last year
- Repository that contains a set of purposefully erroneous Yara rules.☆61Updated 6 months ago
- orc2timeline extracts and analyzes artifacts contained in archives generated with DFIR-ORC.exe to create a timeline from them☆34Updated 7 months ago
- Slides of my public talks☆56Updated 2 years ago
- 100 Days of YARA to be updated with rules & ideas as the year progresses☆60Updated 3 years ago
- God Mode Detection Rules☆135Updated last year
- Simple PowerShell script to enable process scanning with Yara.☆98Updated 3 years ago
- This repository is meant to catalog network and host artifacts associated with various EDR products "shell" and response functionalities.☆92Updated last year
- A home for detection content developed by the delivr.to team☆73Updated 5 months ago
- Offensive Research Guide to Help Defense Improve Detection☆32Updated 3 years ago
- A Windows Event Log MCP☆39Updated 5 months ago