VirusTotal / yara-x
A rewrite of YARA in Rust.
☆663Updated this week
Related projects ⓘ
Alternatives and complementary repositories for yara-x
- AVML - Acquire Volatile Memory for Linux☆881Updated this week
- Threat-hunting tool for Linux☆392Updated this week
- High Octane Triage Analysis☆669Updated this week
- A centralized and enhanced memory analysis platform☆365Updated this week
- Standard collection of rules for capa: the tool for enumerating the capabilities of programs☆543Updated this week
- Elastic Security detection content for Endpoint☆1,056Updated last week
- A Fast (and safe) parser for the Windows XML Event Log (EVTX) format☆694Updated 3 weeks ago
- Malduck is your ducky companion in malware analysis journeys☆319Updated 5 months ago
- Deep Linux runtime visibility meets Wireshark☆244Updated 2 weeks ago
- MemProcFS-Analyzer - Automated Forensic Analysis of Windows Memory Dumps for DFIR☆544Updated 3 weeks ago
- The multi-platform memory acquisition tool.☆694Updated this week
- Living Off The Land Drivers☆1,041Updated last month
- Distributed malware processing framework based on Python, Redis and S3.☆393Updated 3 weeks ago
- DRAKVUF Sandbox - automated hypervisor-level malware analysis system☆1,063Updated 3 weeks ago
- MBC content in markdown☆375Updated this week
- ReversingLabs YARA Rules☆770Updated last month
- A GUI and CLI tool for removing bloat from executables☆342Updated 2 weeks ago
- Dissect is a digital forensics & incident response framework and toolset that allows you to quickly access and analyse forensic artefacts…☆928Updated this week
- AssemblyLine 4: File triage and malware analysis☆249Updated this week
- Chepy is a python lib/cli equivalent of the awesome CyberChef tool.☆932Updated this week
- Hayabusa (隼) is a sigma-based threat hunting and fast forensics timeline generator for Windows event logs.☆2,317Updated this week
- Automated YARA Rule Standardization and Quality Assurance Tool☆166Updated last week
- BLint is a Binary Linter to check the security properties, and capabilities in your executables. Since v2, blint is also an SBOM generato…☆343Updated 2 weeks ago
- ☆527Updated 11 months ago
- Go symbol recovery tool☆614Updated last month
- Cuckoo3 is a Python 3 open source automated malware analysis system.☆639Updated last month
- An offensive data enrichment pipeline☆616Updated 2 months ago
- Open Source EDR for Windows☆1,151Updated last year
- Galah: An LLM-powered web honeypot.☆416Updated last month
- yarGen is a generator for YARA rules☆1,557Updated 5 months ago