YARAHQ / yara-forge
Automated YARA Rule Standardization and Quality Assurance Tool
☆162Updated this week
Related projects ⓘ
Alternatives and complementary repositories for yara-forge
- A pySigma wrapper and langchain toolkit for automatic rule creation/translation☆66Updated last week
- Curated Windows event log Sigma rules used in Hayabusa and Velociraptor.☆144Updated this week
- Rules generated from our investigations.☆189Updated 3 weeks ago
- Sigma rules to share with the community☆115Updated 2 months ago
- LotL RMM☆96Updated this week
- Elastic Security Labs releases☆52Updated 3 weeks ago
- A repository of my own Sigma detection rules.☆156Updated 2 months ago
- A python script developed to process Windows memory images based on triage type.☆258Updated 11 months ago
- A repository to share publicly available Velociraptor detection content☆119Updated this week
- A guide on how to write fast and memory friendly YARA rules☆126Updated last year
- Harness the power of Splunk for your investigations☆77Updated this week
- Active C&C Detector☆150Updated last year
- Rules Shared by the Community from 100 Days of YARA 2023☆78Updated last year
- ☆91Updated this week
- A specification and style guide for YARA rules☆37Updated 9 months ago
- Pointing cybersecurity teams to thousands of detection rules and offensive security tests aligned with common attacker techniques☆123Updated 8 months ago
- Rules shared by the community from 100 Days of YARA 2024☆78Updated 7 months ago
- pySigma Elasticsearch backend☆43Updated this week
- JPCERT/CC public YARA rules repository☆103Updated 5 months ago
- LOLESXi is a curated compilation of binaries/scripts available in VMware ESXi that are were used to by adversaries in their intrusions. T…☆104Updated last month
- ☆222Updated 6 months ago
- YARA rule analyzer to improve rule quality and performance☆93Updated 11 months ago
- Implementation of RITA (Real Intelligence Threat Analytics) in Jupyter Notebook with improved scoring algorithm.☆194Updated 2 years ago
- MISP Playbooks☆174Updated last month
- The Sigma command line interface based on pySigma☆136Updated 3 months ago
- A Python package is used to execute Atomic Red Team tests (Atomics) across multiple operating system environments.☆136Updated 4 months ago
- Rapidly Search and Hunt through Linux Forensics Artifacts☆180Updated 10 months ago
- An opensource sigma conversion tool built using pysigma☆96Updated this week
- Detection Engineering with YARA☆85Updated 10 months ago
- A tool collection for filtering and visualizing logon events. Designed to help answering the "Cotton Eye Joe" question (Where did you com…☆161Updated last week