seifreed / yaraastLinks
A powerful Python library and CLI tool for parsing, analyzing, and manipulating YARA rules through Abstract Syntax Tree (AST) representation
☆32Updated last month
Alternatives and similar repositories for yaraast
Users that are interested in yaraast are comparing it to the libraries listed below
Sorting:
- This repository contains an IDA processor for loading and disassembling compiled yara rules.☆43Updated 11 months ago
- Golem automates C/C++ vulnerability discovery with SemGrep+LLVM+LLM☆95Updated 5 months ago
- A C++ tool for process memory scanning & suspicious telemetry generation that attempts to detect a number of malicious techniques used by…☆85Updated last year
- GoResolver is a Go analysis tool using both Go symbol extraction and Control Flow Graph (CFG) similarity to identify and resolve the func…☆75Updated 3 months ago
- ☆27Updated last month
- Signature-based detection of malware features based on Windows API call sequences. It's like YARA for sandbox API traces!☆82Updated 2 years ago
- eBPF Memory Dump Tool☆93Updated 3 months ago
- SRE - Dissecting Malware for Static Analysis & the Complete Command-line Tool☆56Updated 11 months ago
- A headless, extendable, multi-session, IDA Pro MCP framework.☆84Updated 2 months ago
- Userland exec PoC to be used as attack vector technique☆94Updated last month
- Open Source eBPF Malware Analysis Framework☆53Updated last year
- ☆46Updated last month
- Proof-of-concept modular implant platform leveraging v8☆55Updated 9 months ago
- ☆84Updated 3 months ago
- Malware Analysis tools☆26Updated last year
- Reverse engineering assistant that uses a locally running LLM to aid with pseudocode analysis.☆106Updated this week
- Threat feeds designed to extract adversarial TTPs and IOCs, using: ✨AI✨☆38Updated last week
- Automated vulnerability discovery and annotation☆67Updated last year
- Binary Exploitation Phrack CTF Challenge☆70Updated 3 months ago
- ☆25Updated 2 weeks ago
- Identifies metadata of .NET binary files.☆21Updated last year
- IDA Python scripts☆41Updated 8 months ago
- ☆58Updated last year
- CVE-2024-53691☆13Updated 10 months ago
- A tool to interact with Windows drivers to perform a raw disk read and parse out target files without calling standard Windows file APIs☆98Updated 3 months ago
- Linux BPF plugins for Volatility3☆24Updated last year
- bootloaders.io is a curated list of known malicious bootloaders for various operating systems. The project aims to assist security profes…☆67Updated 2 years ago
- ☆27Updated last year
- Vovk is framework of tools that include a WinDbg extension that generates in-depth YARA rules for malware.☆22Updated last year
- A command line tool for extracting machine learning ready data from software binaries powered by Radare2☆72Updated 7 months ago