Automatically create YARA rules from malicious documents.
☆210May 16, 2022Updated 4 years ago
Alternatives and similar repositories for halogen
Users that are interested in halogen are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Yara rules☆22Mar 27, 2023Updated 3 years ago
- YARA malware query accelerator (web frontend)☆443Feb 3, 2026Updated 8 months ago
- Awesome VirusTotal Intelligence Search Queries☆333May 16, 2023Updated 3 years ago
- Real-time, container-based file scanning at enterprise scale☆1,004Sep 26, 2026Updated last week
- Shows command lines used by latest instances analyzed on Hybrid-Analysis☆43Sep 18, 2018Updated 8 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Automatic YARA rule generation for Malpedia☆169Sep 8, 2022Updated 4 years ago
- Malware similarity platform with modularity in mind.☆80Jul 18, 2021Updated 5 years ago
- Extract and Deobfuscate XLM macros (a.k.a Excel 4.0 Macros)☆588May 5, 2024Updated 2 years ago
- Factual-rules-generator is an open source project which aims to generate YARA rules about installed software from a machine.☆75Jan 18, 2022Updated 4 years ago
- Re-play Security Events☆1,831Mar 20, 2024Updated 2 years ago
- Malduck is your ducky companion in malware analysis journeys☆358Jun 22, 2025Updated last year
- Strelka Web UI for File Submission and Analysis☆76Aug 24, 2026Updated last month
- Simple yara rule manager☆67Dec 27, 2022Updated 3 years ago
- ☆55Sep 6, 2020Updated 6 years ago
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- Generate a Yara rule to find base64-encoded files containg a specific keyword☆40Jul 13, 2018Updated 8 years ago
- Yara Rules for Modern Malware☆80Mar 3, 2024Updated 2 years ago
- An experimental script to perform bulk parsing of arbitrary file features with YARA and console logging.☆21Nov 13, 2022Updated 3 years ago
- Yet Another Yara Automaton - Automatically curate open source yara rules and run scans☆307Dec 27, 2023Updated 2 years ago
- A script that extracts embedded images from Office Open XML (OOXML) documents and generates image hash similarity graphs that cluster vis…☆23Dec 12, 2021Updated 4 years ago
- This script scans the files extracted by Zeek with YARA rules located on the rules folder on a Linux based Zeek sensor, if there is a mat…☆62Dec 16, 2023Updated 2 years ago
- Repository of YARA rules made by Trellix ATR Team☆631Mar 18, 2025Updated last year
- YARI is an interactive debugger for YARA Language.☆91Sep 10, 2025Updated last year
- A list of JARM hashes for different ssl implementations used by some C2/red team tools.☆144Apr 20, 2023Updated 3 years ago
- Proton VPN Special Offer - Get 70% off • AdSpecial partner offer. Trusted by over 100 million users worldwide. Tested, Approved and Recommended by Experts.
- Yara station is a management portal for Neo23x0-Loki. The mission is to transform the standalone nature of the Loki scanner into a centra…☆36Feb 1, 2022Updated 4 years ago
- ☆131Feb 2, 2025Updated last year
- Analysis of malware and Cyber Threat Intel of APT and cybercriminals groups☆727Dec 26, 2022Updated 3 years ago
- ☆64Apr 1, 2021Updated 5 years ago
- Script to pull newly-registered domains and check for similarity against a provided word list.☆13Aug 2, 2020Updated 6 years ago
- Distributed malware processing framework based on Python, Redis and S3.☆479Updated this week
- Online hash checker for Virustotal and other services☆856Sep 22, 2026Updated 2 weeks ago
- YARA rule metadata specification and validation utility / Spécification et validation pour les règles YARA☆118Updated this week
- Event Trace Log file parser in pure Python☆157May 20, 2026Updated 4 months ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- Tool to decrypt the configuration of NanoCore and dump all used plugins☆12Dec 8, 2020Updated 5 years ago
- Random hunting ordiented yara rules☆98Mar 27, 2023Updated 3 years ago
- ☆98Oct 7, 2020Updated 6 years ago
- Threat intelligence and threat detection indicators (IOC, IOA)☆52Nov 27, 2020Updated 5 years ago
- Scripts and tools accompanying HP Threat Research blog posts and reports.☆50Apr 10, 2024Updated 2 years ago
- See adversary, do adversary: Simple execution of commands for defensive tuning/research (now with more ELF on the shelf)☆109Feb 12, 2023Updated 3 years ago
- A multi-threaded malware sample downloader based upon given MD-5/SHA-1/SHA-256 hashes, using multiple malware databases.☆30Apr 14, 2023Updated 3 years ago