Detection Engineering with YARA
☆87Jan 6, 2024Updated 2 years ago
Alternatives and similar repositories for YARA_Detection_Engineering
Users that are interested in YARA_Detection_Engineering are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Yara rules☆21Mar 27, 2023Updated 3 years ago
- ☆33Feb 26, 2022Updated 4 years ago
- Emulates the VirusTotal "vt" YARA module for livehunt rule debugging/testing☆24May 29, 2023Updated 2 years ago
- ☆18Feb 2, 2026Updated 3 months ago
- An experimental script to perform bulk parsing of arbitrary file features with YARA and console logging.☆21Nov 13, 2022Updated 3 years ago
- Proton VPN Special Offer - Get 70% off • AdSpecial partner offer. Trusted by over 100 million users worldwide. Tested, Approved and Recommended by Experts.
- ☆82Sep 29, 2025Updated 7 months ago
- Steezy - Ghetto Yara Generation☆15Mar 27, 2023Updated 3 years ago
- UnpacMe IDA Byte Search☆29Nov 20, 2023Updated 2 years ago
- This is a collection of threat detection rules / rules engines that I have come across.☆300May 5, 2024Updated 2 years ago
- VSCode extension for the YARA pattern matching language☆62Jan 10, 2024Updated 2 years ago
- Cover various security approaches to attack techniques and also provides new discoveries about security breaches.☆487Apr 17, 2025Updated last year
- Rules shared by the community from 100 Days of YARA 2024☆90Jan 1, 2025Updated last year
- Sandbox feature upgrade with the help of wrapped samples☆76Jun 23, 2018Updated 7 years ago
- YARA Language Server☆74Feb 3, 2026Updated 3 months ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- ☆84Nov 21, 2024Updated last year
- Yara Rules for Modern Malware☆80Mar 3, 2024Updated 2 years ago
- Advanced shellcode injector for images supports BMP, GIF, EXIF (JPEG), and LSB (PNG) techniques. Includes XOR encoding, offset indexing, …☆26Jun 11, 2025Updated 11 months ago
- Help deobfuscate VBScript☆18Jul 1, 2022Updated 3 years ago
- A tool that automates regex generation for the x86 and x86-64 instruction sets☆75Apr 18, 2024Updated 2 years ago
- ☆23May 24, 2024Updated last year
- A repository hosting example goodware evtx logs containing sample software installation and basic user interaction☆89Mar 11, 2026Updated 2 months ago
- My collection of scripts for Ghidra (https://github.com/NationalSecurityAgency/ghidra)☆10Sep 13, 2020Updated 5 years ago
- Converting data from services like Censys and Shodan to a common data model☆52May 11, 2026Updated last week
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Alternative YARA scanning engine☆73Aug 23, 2022Updated 3 years ago
- ☆11Jun 12, 2023Updated 2 years ago
- The purpose of this project is to publish and maintain the deployment PowerShell script that automates deployments for Active Directory C…☆259Nov 24, 2023Updated 2 years ago
- Indicators of compromise from to analysis and research by Nextron Threat Research team☆12Sep 17, 2025Updated 8 months ago
- A guide on how to write fast and memory friendly YARA rules☆169Feb 11, 2025Updated last year
- FLARE floss applied to all unpacked+dumped samples in Malpedia, pre-processed for further use.☆80Jan 6, 2026Updated 4 months ago
- Placeholder for my detection repo and misc detection engineering content☆42Oct 20, 2023Updated 2 years ago
- information about ransomware groups (Ransomware Analysis Notes)☆41Dec 26, 2023Updated 2 years ago
- ☆12Mar 28, 2026Updated last month
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- These FLARE-VM configuration files are designed to be help setup a purpose-built installation, remove unnecessary packages to help stream…☆16Apr 10, 2024Updated 2 years ago
- This repository contains various files linked to Operation Shadowhammer as it was originally discovered by Kaspersky Team.☆12Mar 27, 2019Updated 7 years ago
- A list of RMMs designed to be used in automation to build alerts☆119Nov 9, 2025Updated 6 months ago
- Generates YARA rules to detect malware using API hashing☆17Mar 16, 2021Updated 5 years ago
- God Mode Detection Rules☆133Aug 8, 2024Updated last year
- Pure Go bindings for Zydis.☆13Jul 14, 2024Updated last year
- Python based tool to extract forensic info from EventTranscript.db (Windows Diagnostic Data)☆69Sep 13, 2023Updated 2 years ago