hillu / go-yara
Go bindings for YARA
☆366Updated 9 months ago
Alternatives and similar repositories for go-yara:
Users that are interested in go-yara are comparing it to the libraries listed below
- SSDEEP hash lib in Golang☆106Updated last year
- Cross-platform Yara scanner written in Go☆329Updated 2 years ago
- gyp: A pure Go YARA parser☆107Updated last year
- ☆165Updated 2 years ago
- A Go implementation and parser for Sigma rules.☆88Updated 7 months ago
- INACTIVE - http://mzl.la/ghe-archive - go package for interfacing with Linux audit☆92Updated 4 years ago
- Golang library that implements a sigma log rule parser and match engine.☆95Updated 9 months ago
- APIs for generating STIX 2.1 and TAXII 2.1 messages with Go (Golang)☆53Updated 4 months ago
- Golang Parser for Microsoft Event Logs☆102Updated 3 months ago
- Go library for connecting to CertStream☆146Updated 2 years ago
- gonids is a library to parse IDS rules, with a focus primarily on Suricata rule compatibility. There is a discussion forum available that…☆185Updated 2 years ago
- simple YARA-based IOC scanner☆168Updated 2 months ago
- Virustotal API for Go☆65Updated 6 years ago
- Tools for parsing rulesets using the exact grammar as YARA. Written in Go.☆83Updated 2 years ago
- A Go implementation of JARM☆118Updated 2 years ago
- Go bindings for osquery☆410Updated 2 months ago
- Nmap XML parsing library for Go☆101Updated 2 years ago
- TLSH lib in Golang☆139Updated 2 years ago
- Go library for ETW (Event Tracing for Windows) events processing☆65Updated 2 years ago
- Binee: binary emulation environment☆516Updated 2 years ago
- Yara integrated software to handle archive file data.☆306Updated 2 years ago
- GoRE - Package gore is a library for analyzing Go binaries☆487Updated last week
- Deception based detection techniques mapped to the MITRE’s ATT&CK framework☆289Updated 7 years ago
- Freki is a tool to manipulate packets in usermode using NFQUEUE and golang.☆58Updated 2 years ago
- A lightweight Go package to parse, analyze and extract metadata from Portable Executable (PE) binaries. Designed for malware analysis ta…☆357Updated 4 months ago
- YARA Rules I come across on the internet☆337Updated last year
- Yara powered NIDS with high speed packet capture powered by PF_RING☆69Updated 11 months ago
- The official Go client library for VirusTotal API☆202Updated 9 months ago
- A collection of YARA rules we wish to share with the world, most probably referenced from http://blog.inquest.net.☆374Updated 2 years ago
- A PoC tool designed to enhance the effectiveness of your traps by spreading breadcrumbs & honeytokens across your systems to lure the att…☆272Updated 6 years ago