shellcromancer / DaysOfYARA-2023
Rules Shared by the Community from 100 Days of YARA 2023 -
☆18Updated 2 years ago
Alternatives and similar repositories for DaysOfYARA-2023:
Users that are interested in DaysOfYARA-2023 are comparing it to the libraries listed below
- Freyja is a Golang, Purple Team agent that compiles into Windows, Linux and macOS x64 executables.☆42Updated 5 months ago
- reboot of https://github.com/Genetic-Malware/Ebowla in order to simplify / modernize the codebase and provide ongoing support☆22Updated 3 years ago
- Random scripts for azure stuff☆11Updated 2 years ago
- Proof-of-Concept to evade auditd by writing /proc/PID/mem☆21Updated last year
- Automated Persistence and Lateral Movement using GCP Patch Management☆15Updated 2 years ago
- ☆18Updated last year
- Speaking materials from conferences I've given☆9Updated 2 years ago
- Repository for LNK stuff☆30Updated 2 years ago
- The repository accompanying the Buer Emulation workshop☆24Updated 3 years ago
- Continuous kerberoast monitor☆45Updated last year
- ☆15Updated 2 years ago
- Firebase Domain Front Code☆21Updated 3 years ago
- A tool to generate macOS initial access vectors using Prelude Operator payloads☆17Updated 2 years ago
- Scans a list of raccoon servers from Tria.ge and extracts the config☆15Updated last year
- Automatically spider the result set of a Censys/Shodan search and download all files where the file name or folder path matches a regex.☆27Updated 2 years ago
- ☆16Updated 9 months ago
- ☆14Updated last year
- various slides and presentations I've worked on☆18Updated last month
- A Canary which fires when uninstalled☆34Updated 4 years ago
- CLI Search for Security Operators of MITRE ATT&CK URLs☆16Updated 2 years ago
- ☆37Updated last year
- ☆13Updated last year
- ☆14Updated 11 months ago
- A pair of scripts to import session and local group information that has been collected from alternate data sources into BloodHound's Neo…☆19Updated 2 years ago
- A JXA script for enumerating running processes, printed out in a json, parent-child tree.☆13Updated 3 years ago
- My nim learning experiments☆11Updated 2 years ago
- PoC MSI payload based on ASEC/AhnLab's blog post☆23Updated 2 years ago
- ☆18Updated last year
- ☆12Updated 2 years ago
- Drakus allows you to monitor the artifacts and domains used in a Red Team exercise to see if they have been uploaded to certain online ma…☆13Updated 4 years ago