Velocidex / go-yara
Go bindings for YARA
☆12Updated 8 months ago
Related projects ⓘ
Alternatives and complementary repositories for go-yara
- A collection of shellcode hashes☆17Updated 6 years ago
- Golang parser for OLE files☆31Updated 5 months ago
- A golang implementation of a prefetch parser.☆19Updated 2 months ago
- A Portable Executable parser for Golang☆47Updated last year
- Unpacker for donut shellcode☆10Updated 4 years ago
- Specialized tool to dump Position Independent Code.☆21Updated 4 years ago
- RPC Monitor based on The ETW Microsoft-Windows-Rpc provider☆24Updated 4 years ago
- Experiments on the Windows Internals☆30Updated 5 years ago
- Pure Python parser for data encoded by .NET's BinaryFormatter☆49Updated 6 years ago
- Telsy CTI Research Team☆57Updated 3 years ago
- PE file mapping and manipulation package.☆35Updated 2 years ago
- Tool to decrypt the configuration of NanoCore and dump all used plugins☆11Updated 3 years ago
- An IDA plugin to deal with Event Tracing for Windows (ETW)☆50Updated 2 years ago
- A ready-made template for a project based on libpeconv.☆41Updated last month
- Dynamic PowerShell Analysis Framework Based Upon PowerShell Debugging Functionality☆82Updated last year
- Package that provides different PE tricks to difficult the reverse engineering of your Windows applications.☆11Updated 4 years ago
- The plan is to have a replacement for psexec☆30Updated 6 years ago
- Trace ScriptBlock execution for powershell v2☆39Updated 4 years ago
- Cybersecurity Incidents Mind Maps☆32Updated 3 years ago
- A Lazy Programmer's Tips for Avoiding the SOC ~ BSides Belfast 2024☆11Updated 2 months ago
- Simplified go-cat agent for caldera☆10Updated 11 months ago
- Yapscan is a YAra based Process SCANner, aimed at giving more control about what to scan and giving detailed reports on matches.☆59Updated last year
- ☆49Updated 4 years ago
- all credits go to @mgeeky☆58Updated 3 years ago
- This is a simple tool to dump all the reparse points on an NTFS volume.☆31Updated 4 years ago
- A repository where I share my injection implemintations☆29Updated 4 years ago
- Rekall Memory Forensic Framework☆29Updated 5 years ago