pracsec / YaraTools
Over 100K open-source YARA signatures evaluated against over 280K files to give insights into the performance of each YARA rule.
☆22Updated last year
Related projects ⓘ
Alternatives and complementary repositories for YaraTools
- Automatically spider the result set of a Censys/Shodan search and download all files where the file name or folder path matches a regex.☆27Updated last year
- ☆13Updated 2 years ago
- Defeating Anti-Debugging Techniques for Malware Analysis☆13Updated 2 years ago
- The Catherine Framework is a general-purpose cybersecurity framework built to provide extended support for defense operations.☆16Updated 7 months ago
- A cap/pcap packet parser to make life easier when performing stealth/passive reconnaissance.☆21Updated 4 months ago
- Searching .evtx logs for remote connections☆23Updated last year
- ☆22Updated 2 years ago
- ☆18Updated 7 months ago
- OMIGOD! OM I GOOD? A free scanner to detect VMs vulnerable to one of the "OMIGOD" vulnerabilities discovered by Wiz's threat research tea…☆18Updated 3 years ago
- Collection of generic YARA rules☆14Updated 5 months ago
- CIS Benchmark testing of Windows SIEM configuration☆43Updated last year
- A spreadsheet designed to automatically generate Key Performance Indicators (charts) for Cyber Security Services based on documented data…☆29Updated 4 months ago
- ☆12Updated 2 years ago
- A tool that adds reproducible UUIDs to YARA rules☆13Updated 6 months ago
- ☆50Updated 7 months ago
- ☆27Updated 3 months ago
- Malware campaigns and APTs research by BlackArrow☆18Updated 4 years ago
- Yet Another Memory Analyzer for malware detection☆24Updated last year
- A full analysis report detailing as much as possible of a Malware or a Threat☆24Updated 5 months ago
- Collection of my own detection rules☆14Updated 9 months ago
- Extension functionality for the NightHawk operator client☆26Updated last year
- Drakus allows you to monitor the artifacts and domains used in a Red Team exercise to see if they have been uploaded to certain online ma…☆13Updated 3 years ago
- Scans a list of raccoon servers from Tria.ge and extracts the config☆15Updated last year
- Create PDFs with HTML smuggling attachments that save on opening the document.☆27Updated last year
- Avocado is a powerful C2 framework written in Python with stageless implants in Rust. Avocado's implant runs seamlessly on both Linux and…☆17Updated last year
- Tool for obtaining information about PPL processes☆17Updated 9 months ago