VirusTotal / yara-xLinks
A rewrite of YARA in Rust.
☆818Updated this week
Alternatives and similar repositories for yara-x
Users that are interested in yara-x are comparing it to the libraries listed below
Sorting:
- AVML - Acquire Volatile Memory for Linux☆961Updated last week
- Threat-hunting tool for Linux☆938Updated last month
- A Fast (and safe) parser for the Windows XML Event Log (EVTX) format☆770Updated this week
- AssemblyLine 4: File triage and malware analysis☆337Updated last week
- Standard collection of rules for capa: the tool for enumerating the capabilities of programs☆607Updated 3 weeks ago
- High Octane Triage Analysis☆754Updated this week
- Go symbol recovery tool☆774Updated last month
- DRAKVUF Sandbox - automated hypervisor-level malware analysis system☆1,161Updated this week
- A GUI and CLI tool for removing bloat from executables☆408Updated last week
- Cuckoo3 is a Python 3 open source automated malware analysis system.☆730Updated 3 weeks ago
- Elastic Security detection content for Endpoint☆1,234Updated 2 weeks ago
- Collection of private Yara rules.☆358Updated 3 months ago
- The multi-platform memory acquisition tool.☆807Updated 3 weeks ago
- Distributed malware processing framework based on Python, Redis and S3.☆431Updated 3 weeks ago
- Dissect is a digital forensics & incident response framework and toolset that allows you to quickly access and analyse forensic artefacts…☆1,022Updated 2 weeks ago
- ReversingLabs YARA Rules☆828Updated 2 weeks ago
- BLint is a Binary Linter to check the security properties, and capabilities in your executables. Since v2, blint is also an SBOM generato…☆388Updated last month
- Malduck is your ducky companion in malware analysis journeys☆339Updated 3 weeks ago
- Living Off The Land Drivers☆1,222Updated last week
- Rust Library Recognition Project for Rust Malware by the MSTIC-MIRAGE Team☆181Updated this week
- Automated YARA Rule Standardization and Quality Assurance Tool☆228Updated last week
- A Binary Genetic Traits Lexer Framework☆496Updated last week
- MBC content in markdown☆462Updated last month
- Sysmon for Linux☆1,913Updated last week
- Malware repository component for samples & static configuration with REST API interface.☆362Updated 3 weeks ago
- Dynamic unpacker based on PE-sieve☆739Updated last month
- MemProcFS-Analyzer - Automated Forensic Analysis of Windows Memory Dumps for DFIR☆649Updated 3 weeks ago
- Deep Linux runtime visibility meets Wireshark☆292Updated 3 weeks ago
- Memory acquisition for Linux that makes sense.☆199Updated last year
- Owlyshield is an EDR framework designed to safeguard vulnerable applications from potential exploitation (C&C, exfiltration and impact).☆412Updated last year