Yara-Rules / rulesLinks
Repository of yara rules
☆4,515Updated last year
Alternatives and similar repositories for rules
Users that are interested in rules are comparing it to the libraries listed below
Sorting:
- A curated list of awesome YARA rules, tools, and people.☆3,967Updated 5 months ago
- Loki - Simple IOC and YARA Scanner☆3,640Updated this week
- YARA signature and IOC database for my scanners and tools☆2,734Updated this week
- yarGen is a generator for YARA rules☆1,704Updated 5 months ago
- The pattern matching swiss knife☆9,051Updated last week
- FakeNet-NG - Next Generation Dynamic Network Analysis Tool☆1,994Updated last week
- FLARE Obfuscated String Solver - Automatically extract obfuscated strings from malware.☆3,676Updated last week
- Indicators of Compromises (IOC) of our various investigations☆1,830Updated this week
- A community-driven, open-source project to share detection logic, adversary tradecraft and resources to make detection development more e…☆4,338Updated last year
- A toolset to make a system look as if it was the victim of an APT attack☆2,650Updated 2 years ago
- APTnotes data☆1,746Updated 8 months ago
- APT & CyberCriminal Campaign Collection☆3,964Updated last year
- Please no pull requests for this repository. Thanks!☆2,294Updated last week
- Malware Configuration And Payload Extraction☆2,659Updated this week
- Real Intelligence Threat Analytics (RITA) is a framework for detecting command and control communication through network traffic analysis…☆2,515Updated last year
- oletools - python tools to analyze MS OLE2 files (Structured Storage, Compound File Binary Format) and MS Office documents, for malware a…☆3,163Updated 3 months ago
- Cuckoo Sandbox is an automated dynamic malware analysis system☆5,793Updated 3 years ago
- Investigate malicious Windows logon by visualizing and analyzing Windows event log☆2,997Updated last week
- An informational repo about hunting for adversaries in your IT environment.☆1,814Updated 3 years ago
- Web app that provides basic navigation and annotation of ATT&CK matrices☆2,217Updated this week
- Digging Deeper....☆3,460Updated this week
- Windows Events Attack Samples☆2,417Updated 2 years ago
- Cyber Threat Intelligence Repository expressed in STIX 2.0☆1,941Updated last month
- The Python interface for YARA☆706Updated 3 months ago
- Interesting APT Report Collection And Some Special IOCs☆2,672Updated last week
- The Hunting ELK☆3,879Updated last year
- Super timeline all the things☆1,913Updated this week
- MISP (core software) - Open Source Threat Intelligence and Sharing Platform☆5,916Updated this week
- LiME (formerly DMD) is a Loadable Kernel Module (LKM), which allows the acquisition of volatile memory from Linux and Linux-based devices…☆1,856Updated 3 weeks ago
- Automated Adversary Emulation Platform☆6,410Updated last week