wolfvan / YaraRETLinks
Carving tool based in Radare2 & Yara
☆16Updated 7 years ago
Alternatives and similar repositories for YaraRET
Users that are interested in YaraRET are comparing it to the libraries listed below
Sorting:
- YETI (Your Everyday Threat Intelligence) Integration to Elastic Stack☆16Updated 4 years ago
- THOR MITRE ATT&CK Framework Coverage☆25Updated 5 years ago
- Cybersecurity Incidents Mind Maps☆34Updated 4 years ago
- Generic Signature Format for SIEM Systems☆14Updated 4 years ago
- Notebooks created to attack and secure Active Directory environments☆28Updated 6 years ago
- ☆35Updated 4 years ago
- ☆13Updated 6 years ago
- This repository contains tools used by 401trg.☆20Updated 4 years ago
- A Yara Lua output script for Suricata☆20Updated 6 years ago
- Remote Desktop Client Fingerprint script for Zeek. Based off of https://github.com/0x4D31/fatt☆40Updated 2 years ago
- CIRCL system forensic tools or a jumble of tools to support forensic☆42Updated 2 years ago
- Carving tool based in Radare2 & Yara☆16Updated 7 years ago
- Repository for scripts and tips for "Yara Scan Service"☆20Updated 2 years ago
- A collection of threat intelligence data such as IOC, Yara and Snort/Suricata Rules etc.☆10Updated 6 years ago
- Bro PCAP Processing and Tagging API☆28Updated 8 years ago
- ☆12Updated 7 years ago
- MasterParser is a simple, all-in-one, digital forensics artifact parser☆23Updated 4 years ago
- Simple SYSLOG client in Go☆22Updated 5 months ago
- A collection of Indicators of Compromise (IoCs), most aligning with samples derived from the signatures in the YARA-Signatures repo☆30Updated 5 years ago
- Check IOC provided by a MISP instance on Suricata events☆18Updated 6 years ago
- A script to assist in processing forensic RAM captures for malware triage☆27Updated 4 years ago
- intelligence-icons is a collection of icons and diagrams for building training and marketing materials around Intelligence sharing; inclu…☆41Updated 6 years ago
- Threat Mapping Catalogue☆18Updated 4 years ago
- Collect autorun records from running system☆60Updated 3 years ago
- NTFS file system specimens☆13Updated 2 years ago
- A collection of tools adversaries commonly use in an attack.☆14Updated last year
- Threat hunting repo for my independent study on threat hunting with OSQuery☆27Updated 7 years ago
- Old home of LimaCharlie, open source EDR☆32Updated 2 years ago
- This module installs and configures MISP (Malware Information Sharing Platform)☆13Updated last month
- An active domain name query tool to help keep track of domain name movements...☆15Updated 4 years ago