ThreatFlux / YaraFluxLinks
A yara based MCP Server
☆15Updated last week
Alternatives and similar repositories for YaraFlux
Users that are interested in YaraFlux are comparing it to the libraries listed below
Sorting:
- A specification and style guide for YARA rules☆54Updated last year
- Augmentation to Machine Readable CTI☆31Updated 3 months ago
- Rules shared by the community from 100 Days of YARA 2024☆85Updated 7 months ago
- Summiting the Pyramid is a research project focused on engineering cyber analytics to make adversary evasion more difficult. The research…☆47Updated 3 months ago
- This repository contains helper scripts and custom configs to get the best out of Google's Timesketch project.☆113Updated last year
- ☆52Updated last year
- USN Journal full path builder☆61Updated 11 months ago
- ☆10Updated 10 months ago
- Automated YARA Rule Standardization and Quality Assurance Tool☆238Updated this week
- This guide describes a process for developing Cyber Threat Intelligence Priority Intelligence Requirements☆122Updated last year
- Powershell sandboxing utility☆19Updated last week
- ☆94Updated 3 weeks ago
- FJTA (Forensic Journal Timeline Analyzer) is a tool that analyzes Linux filesystem (ext4, XFS) journals (not systemd-journald logs), gene…☆80Updated this week
- Extracts IoCs, TTPs and the relationships between them. Outputs a STIX 2.1 bundle.☆66Updated this week
- Sample evtx files to use for testing hayabusa detection rules☆59Updated 9 months ago
- Harness the power of Splunk for your investigations☆123Updated 2 months ago
- A guide on how to write fast and memory friendly YARA rules☆151Updated 6 months ago
- Detection Engineering with YARA☆87Updated last year
- Project based on RegRipper, to extract add'l value/pivot points from TLN events file☆86Updated 6 months ago
- JPCERT/CC public YARA rules repository☆110Updated 8 months ago
- An opensource sigma conversion tool built using pysigma☆132Updated this week
- An IDE and translation engine for detection engineers and threat hunters. Be faster, write smarter, keep 100% privacy.☆156Updated 6 months ago
- A repository of my own Sigma detection rules.☆160Updated 11 months ago
- This directory features proven systems that demonstrate value to your threat-informed efforts using metrics.☆113Updated 9 months ago
- WISKESS automates the Windows evidence processing for Incident Response investigations. Rust version.☆13Updated last week
- ☆141Updated last month
- The SOLVE-IT knowledge base for digital forensics☆40Updated last week
- pySigma Elasticsearch backend☆54Updated this week
- TIE is a machine learning model for inferring associated MITRE ATT&CK techniques from previously observed techniques.☆57Updated 4 months ago
- A repository to share publicly available Velociraptor detection content☆187Updated last week