binalyze / tigma
Sigma Engine implementation in TypeScript
☆27Updated last year
Related projects: ⓘ
- VSCode extension for the YARA pattern matching language☆60Updated 8 months ago
- Low budget VirusTotal Intelligence Cosplay☆20Updated 2 years ago
- enpoint detection / live analysis & sandbox host / signatures quality test☆41Updated 3 years ago
- Liberating dem proprietary APT implants☆21Updated 4 years ago
- ☆15Updated 4 years ago
- ☆10Updated 6 months ago
- A repo for security analytics & threat hunting resources☆20Updated 5 years ago
- ☆20Updated last year
- Carbon Black Response IR tool☆53Updated 3 years ago
- Random hunting ordiented yara rules☆95Updated last year
- XOR Key Extractor☆48Updated last month
- event shipper for Carbon Black Defense notifications☆10Updated last year
- Malware similarity platform with modularity in mind.☆75Updated 3 years ago
- A YARA Rule Performance Measurement Tool☆58Updated 6 months ago
- Links to malware-related YARA rules☆14Updated last year
- PowerGRR is an API client library in PowerShell working on Windows, Linux and macOS for GRR automation and scripting.☆56Updated 2 years ago
- Standardized Malware Analysis Tool☆51Updated 3 years ago
- Python parser for Red Canary's Atomic Red Team Yamls☆27Updated 5 years ago
- evtx2json extracts events of interest from event logs, dedups them, and exports them to json.☆41Updated 3 years ago
- Collection of YARA signatures from individual research☆41Updated 10 months ago
- Threat intelligence and threat detection indicators (IOC, IOA)☆51Updated 3 years ago
- gyp: A pure Go YARA parser☆98Updated 6 months ago
- pollen - A command-line tool for interacting with TheHive☆34Updated 5 years ago
- Yara rules☆18Updated last year
- Recon Hunt Queries☆76Updated 3 years ago
- Jupyter Notebooks for Cyber Threat Intelligence☆35Updated last year
- C# User Simulation☆33Updated last year
- ☆18Updated 2 years ago
- Automatic detection engineering technical state compliance☆49Updated 2 months ago
- Python 3 library to build YARA rules.☆12Updated 2 years ago