wrayjustin / yaidsLinks
YAIDS - Yara-Based IDS - Yara as an Intrusion Detection System / Yet Another Intrusion Detection System - An Intrusion Detection System (IDS) utilizing Yara and multi-threading
☆26Updated 3 years ago
Alternatives and similar repositories for yaids
Users that are interested in yaids are comparing it to the libraries listed below
Sorting:
- A collection of my public YARA signatures for various malware families☆30Updated last year
- A collection of Indicators of Compromise (IoCs), most aligning with samples derived from the signatures in the YARA-Signatures repo☆30Updated 5 years ago
- Collection of YARA signatures from individual research☆45Updated 2 years ago
- Yara rules for malicious javascript files from public repositories or written by me.☆13Updated 4 years ago
- Repository of all the sites related to infosec IP/Domain/Hash/SSL/etc OSINT and eventually will include more.☆69Updated last month
- Factual-rules-generator is an open source project which aims to generate YARA rules about installed software from a machine.☆75Updated 3 years ago
- Knowledge base workflow management for YARA rules and C2 artifacts (IP, DNS, SSL) (ALPHA STATE AT THE MOMENT)☆103Updated 5 months ago
- Python based CLI for MalwareBazaar☆39Updated 5 months ago
- Validates yara rules and tries to repair the broken ones.☆40Updated 5 years ago
- A map displaying threat actors from the misp-galaxy☆33Updated 2 years ago
- Utility for parsing Bro log files into CSV or JSON format☆42Updated 2 years ago
- Yara rules for detecting malware☆23Updated 3 months ago
- A mapping of used malware names to commonly known family names☆62Updated 2 years ago
- ☆24Updated 3 years ago
- Yara rules to be used with the Burp Yara-Scanner extension☆48Updated 3 years ago
- Assemblyline 4 Malware detonation service (Cuckoo)☆17Updated last year
- Client library for the mwdb service by CERT Polska.☆42Updated 3 months ago
- Yara Based Detection Engine for web browsers☆49Updated 4 years ago
- A python script that allows a researcher to merge databases from Malshare and Malware Bazaar to created enrriched datasets from SIEM tool…☆28Updated 5 years ago
- ☆22Updated 5 years ago
- Malware similarity platform with modularity in mind.☆79Updated 4 years ago
- ConventionEngine - A Yara Rulepack for PDB Path Hunting☆37Updated 2 years ago
- Remote Desktop Client Fingerprint script for Zeek. Based off of https://github.com/0x4D31/fatt☆40Updated 2 years ago
- Virustotal Data to Timesketch☆16Updated 6 years ago
- Yara station is a management portal for Neo23x0-Loki. The mission is to transform the standalone nature of the Loki scanner into a centra…☆36Updated 3 years ago
- This repository regroups the Yara Rules for the Unprotect Project☆26Updated 5 years ago
- Parallel ssdeep clustering kit☆20Updated 8 years ago
- A set of YARA rules for the AIL framework to detect leak or information disclosure☆40Updated 10 months ago
- Fang and defang indicators of compromise. You can test this project in a GUI here: http://ioc-fanger.hightower.space .☆67Updated 2 years ago
- Pythonic way to work with the warning lists defined there: https://github.com/MISP/misp-warninglists☆34Updated last week