Yara rules written by me, for free use.
☆20Nov 26, 2021Updated 4 years ago
Alternatives and similar repositories for yara-rules
Users that are interested in yara-rules are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Collection of Malware Lures☆23Oct 8, 2021Updated 4 years ago
- ☆11Jan 1, 2022Updated 4 years ago
- A malware scanner with Yara and ClamAV binding☆12May 23, 2026Updated 3 months ago
- Threat Feeds, Threat lists, and regular lists of known IP ranges and domains. It updates every 4 hours.☆16May 21, 2021Updated 5 years ago
- Small-scale threat emulation and detection range built on Elastic and Atomic Redteam.☆39Dec 17, 2025Updated 8 months ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- Yara rules for quick reverse engineering of malware.☆18Dec 9, 2015Updated 10 years ago
- Steezy - Ghetto Yara Generation☆15Mar 27, 2023Updated 3 years ago
- A collection of shellcode hashes☆17Aug 15, 2018Updated 8 years ago
- ☆13Feb 5, 2025Updated last year
- Streaming Unexpected Network Byte Sequences with High Probability of Blue Screening or Otherwise Crashing Attacker Command-and-Control No…☆22Jul 14, 2019Updated 7 years ago
- ☆14Mar 9, 2023Updated 3 years ago
- This is a little plugin to copy disassembly in a way that is usable in YARA rules!☆48Apr 14, 2025Updated last year
- A collection of YARA rules for public use. Built from information in intelligence profiles, dossiers and file work.☆18Sep 10, 2023Updated 2 years ago
- A collection of my public YARA signatures for various malware families☆30Sep 20, 2024Updated last year
- End-to-end encrypted email - Proton Mail • AdSpecial offer: 40% Off Yearly / 80% Off First Month. All Proton services are open source and independently audited for security.
- Generate YARA rules from Windows API hashes for malware detection and hunting.☆17Aug 11, 2026Updated 2 weeks ago
- Run Sigma detection rules on logs from the new MacOS EndpointSecurity Framework☆22Jan 22, 2021Updated 5 years ago
- Collection of YARA signatures from individual research☆45Nov 20, 2023Updated 2 years ago
- Decoders for 7ev3n ransomware☆17Oct 24, 2016Updated 9 years ago
- Listing of YARA rules I wrote for Live and Retro hunts. Includes Jupyter infostealer, suspicious powershell, dll hijacking, vbs downloade…☆17Jun 26, 2026Updated 2 months ago
- Welcome to the Pressidium® Yara Rules repository. This section contains a carefully curated collection of Yara rules specifically designe…☆19Nov 5, 2023Updated 2 years ago
- ☆14Jun 15, 2026Updated 2 months ago
- Packer Templates☆18May 9, 2022Updated 4 years ago
- ConventionEngine - A Yara Rulepack for PDB Path Hunting☆37Mar 15, 2023Updated 3 years ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- ☆29Aug 12, 2021Updated 5 years ago
- IOCParser extracts Indicators of Compromise from reports, feeds, URLs, stdin, and directory trees. It supports refanging, MISP warning-li…☆19Jun 22, 2026Updated 2 months ago
- Repository of tools, YARA rules, and code-snippets from Stairwell's research team.☆23Jan 31, 2024Updated 2 years ago
- Virtual machines that are set up with a variety of known vulnerabilities.☆17Mar 1, 2022Updated 4 years ago
- Generate malware traces for detection tests☆16Aug 10, 2026Updated 3 weeks ago
- Scripts and lists to help generate YARA friendly string mutations☆23Apr 9, 2023Updated 3 years ago
- A Python wrapper library for libyara and a local server for fully utilizing the CPUs of the system to scan with yara...with additional ca…☆19Dec 8, 2022Updated 3 years ago
- Yara rules for detecting malware☆22Sep 9, 2025Updated 11 months ago
- Low budget VirusTotal Intelligence Cosplay☆20Jan 6, 2022Updated 4 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- This repository regroups the Yara Rules for the Unprotect Project☆26Nov 19, 2020Updated 5 years ago
- Windows GPU rootkit PoC by Team Jellyfish☆23Jul 2, 2015Updated 11 years ago
- The NowSecure Mobile Security Report☆11Nov 16, 2016Updated 9 years ago
- A handy script to inject Frida-Gadgets and enable debugging in Android applications.☆14Nov 22, 2024Updated last year
- A practical DFIR cheatsheet for identifying, collecting, triaging, and reviewing macOS persistence mechanisms, with acquisition-aware gui…☆25Apr 26, 2026Updated 4 months ago
- Simple unpacking script for Ezuri ELF Crypter☆36Jul 28, 2021Updated 5 years ago
- Import your WordPress blog to Write.as☆13Feb 20, 2025Updated last year