ail-project / ail-yara-rules
A set of YARA rules for the AIL framework to detect leak or information disclosure
☆37Updated 4 months ago
Related projects ⓘ
Alternatives and complementary repositories for ail-yara-rules
- Factual-rules-generator is an open source project which aims to generate YARA rules about installed software from a machine.☆76Updated 2 years ago
- Links to malware-related YARA rules☆14Updated 2 years ago
- C# User Simulation☆33Updated 2 years ago
- Repository of Yara rules created by the Stratosphere team☆26Updated 3 years ago
- A list of IOCs applicable to PoshC2☆24Updated 4 years ago
- Continuous kerberoast monitor☆44Updated last year
- Analytics for Accounting logs from Network devices☆16Updated 3 years ago
- various slides and presentations I've worked on☆18Updated 9 months ago
- Surface Analysis System on Cloud☆19Updated 11 months ago
- Tweettioc Splunk App☆20Updated 4 years ago
- ☆15Updated 3 years ago
- Forked and updated with some additional features over the original☆16Updated 3 years ago
- ☆22Updated 3 years ago
- Data exfiltration and covert communication tool☆37Updated last year
- Cybersecurity Incidents Mind Maps☆32Updated 3 years ago
- ☆14Updated 6 years ago
- Exfiltration based on custom X509 certificates☆26Updated 9 months ago
- Generate YARA rules for OOXML documents.☆37Updated last year
- ☆21Updated last year
- Tracking APT IOCs☆25Updated 4 years ago
- Yara rules☆20Updated last year
- Notebooks created to attack and secure Active Directory environments☆27Updated 5 years ago
- Reproducible and extensible BloodHound playbooks☆42Updated 4 years ago
- Threat Mapping Catalogue☆17Updated 3 years ago
- Repository for scripts and tips for "Yara Scan Service"☆20Updated last year
- Threat hunting with EQL and Bro. This repo contains modifications to EQL and EQLLib to use BRO logs.☆8Updated 5 years ago
- IcedID Decryption Tool☆27Updated 3 years ago
- D-Scan project for office document analysis and generating flow diagram of macro in documents. For demo visit☆29Updated last week
- A collection of Indicators of Compromise (IoCs), most aligning with samples derived from the signatures in the YARA-Signatures repo☆30Updated 4 years ago