malpedia / signator-rules
Collection of rules created using YARA-Signator over Malpedia
☆127Updated 3 months ago
Alternatives and similar repositories for signator-rules:
Users that are interested in signator-rules are comparing it to the libraries listed below
- Community modules for CAPE Sandbox☆89Updated this week
- ☆103Updated last week
- YARA rule metadata specification and validation utility / Spécification et validation pour les règles YARA☆99Updated this week
- JPCERT/CC public YARA rules repository☆106Updated 2 months ago
- Elastic Security Labs releases☆57Updated 3 months ago
- Automatic YARA rule generation for Malpedia☆156Updated 2 years ago
- A guide on how to write fast and memory friendly YARA rules☆135Updated this week
- A YARA rules repository continuously updated for monitoring the old and new threats from articles, incidents responses ...☆138Updated last year
- File analysis and management framework.☆80Updated last year
- ☆65Updated 2 weeks ago
- YARA rule analyzer to improve rule quality and performance☆96Updated last month
- c2 traffic☆189Updated 2 years ago
- Further investigation in to APT campaigns disclosed by private security firms and security agencies☆85Updated 2 years ago
- Python based CLI for MalwareBazaar☆36Updated 3 months ago
- Rules Shared by the Community from 100 Days of YARA 2023☆77Updated last year
- Detection in the form of Yara, Snort and ClamAV signatures.☆218Updated 3 months ago
- Research indicators and detection rules☆66Updated last year
- ☆198Updated last year
- ☆130Updated last year
- Repository with selected IOCs and YARA rules for threat hunting.☆35Updated last month
- Signature-based detection of malware features based on Windows API call sequences. It's like YARA for sandbox API traces!☆82Updated last year
- Automated YARA Rule Standardization and Quality Assurance Tool☆190Updated last week
- Open Dataset of Cobalt Strike Beacon metadata (2018-2022)☆125Updated 2 years ago
- Hatching Triage public command-line utility and API library.☆66Updated last year
- This repository contains analysis scripts, YARA rules, and additional IoCs related to our Telekom Security blog posts.☆110Updated last year
- 100 Days of YARA to be updated with rules & ideas as the year progresses☆58Updated 2 years ago
- Python scripts for Malware Bazaar☆148Updated 8 months ago
- pySigma Elasticsearch backend☆50Updated this week
- Yara station is a management portal for Neo23x0-Loki. The mission is to transform the standalone nature of the Loki scanner into a centra…☆36Updated 3 years ago
- Visually inspect and force decode YARA and regex matches found in both binary and text data. With Colors.☆111Updated 2 months ago