elastic / labs-releases
Elastic Security Labs releases
☆59Updated 4 months ago
Alternatives and similar repositories for labs-releases:
Users that are interested in labs-releases are comparing it to the libraries listed below
- YARA rule analyzer to improve rule quality and performance☆97Updated 2 months ago
- A repository hosting example goodware evtx logs containing sample software installation and basic user interaction☆76Updated last year
- Rules Shared by the Community from 100 Days of YARA 2023☆77Updated last year
- JPCERT/CC public YARA rules repository☆106Updated 3 months ago
- A guide on how to write fast and memory friendly YARA rules☆141Updated last month
- Signature-based detection of malware features based on Windows API call sequences. It's like YARA for sandbox API traces!☆82Updated last year
- ☆30Updated last week
- ☆67Updated 3 weeks ago
- Collection of rules created using YARA-Signator over Malpedia☆127Updated 4 months ago
- 100 Days of YARA to be updated with rules & ideas as the year progresses☆58Updated 2 years ago
- yara detection rules for hunting with the threathunting-keywords project☆108Updated 2 weeks ago
- A specification and style guide for YARA rules☆46Updated last year
- Repository of Yara Rules☆103Updated last month
- A pySigma wrapper to manage detection rules.☆37Updated 2 weeks ago
- Memory Baseliner is a script that can compare two windows memory images or perform frequency of occurrence / data stacking analysis on mu…☆52Updated last year
- Active C&C Detector☆152Updated last year
- Rules shared by the community from 100 Days of YARA 2024☆85Updated 2 months ago
- Project based on RegRipper, to extract add'l value/pivot points from TLN events file☆84Updated last month
- The Linux DFIR Collector is a stand-alone collection tool for Gnu / Linux. Dump artifacts in json format with very few impacts on the hos…☆30Updated 3 years ago
- ☆124Updated 3 weeks ago
- ☆236Updated 10 months ago
- Alternative YARA scanning engine☆68Updated 2 years ago
- Python based CLI for MalwareBazaar☆36Updated 4 months ago
- This repository contains supplemental items including IOCs, and signatures discussed in Huntress blogposts, and other media.☆35Updated 3 months ago
- A C# based tool for analysing malicious OneNote documents☆111Updated last year
- pySigma Elasticsearch backend☆50Updated this week
- A pySigma wrapper and langchain toolkit for automatic rule creation/translation☆76Updated 3 weeks ago
- Jupyter Notebooks for Cyber Threat Intelligence☆36Updated last year
- Yara Rules for Modern Malware☆73Updated last year