wrayjustin / yaidsLinks
YAIDS - Yara-Based IDS - Yara as an Intrusion Detection System / Yet Another Intrusion Detection System - An Intrusion Detection System (IDS) utilizing Yara and multi-threading
☆26Updated 3 years ago
Alternatives and similar repositories for yaids
Users that are interested in yaids are comparing it to the libraries listed below
Sorting:
- Collection of YARA signatures from individual research☆45Updated 2 years ago
- A collection of my public YARA signatures for various malware families☆30Updated last year
- Assemblyline 4 Malware detonation service (Cuckoo)☆17Updated last year
- A collection of Indicators of Compromise (IoCs), most aligning with samples derived from the signatures in the YARA-Signatures repo☆29Updated 5 years ago
- Repository of all the sites related to infosec IP/Domain/Hash/SSL/etc OSINT and eventually will include more.☆70Updated 2 months ago
- Knowledge base workflow management for YARA rules and C2 artifacts (IP, DNS, SSL) (ALPHA STATE AT THE MOMENT)☆103Updated 6 months ago
- A set of YARA rules for the AIL framework to detect leak or information disclosure☆40Updated 11 months ago
- A python script that allows a researcher to merge databases from Malshare and Malware Bazaar to created enrriched datasets from SIEM tool…☆28Updated 5 years ago
- Utility for parsing Bro log files into CSV or JSON format☆41Updated 3 years ago
- Yara rules for malicious javascript files from public repositories or written by me.☆13Updated 4 years ago
- Python based CLI for MalwareBazaar☆39Updated 5 months ago
- Factual-rules-generator is an open source project which aims to generate YARA rules about installed software from a machine.☆75Updated 4 years ago
- Validates yara rules and tries to repair the broken ones.☆40Updated 5 years ago
- Client library for the mwdb service by CERT Polska.☆42Updated 3 months ago
- CyCAT.org API back-end server including crawlers☆29Updated 2 years ago
- Lightweight Python-Based Malware Analysis Pipeline☆37Updated last month
- ☆24Updated 3 years ago
- Fang and defang indicators of compromise. You can test this project in a GUI here: http://ioc-fanger.hightower.space .☆68Updated 2 years ago
- This repository has been archived in favor of https://github.com/idaholab/Malcolm-Test-Artifacts☆37Updated last year
- Remote Desktop Client Fingerprint script for Zeek. Based off of https://github.com/0x4D31/fatt☆40Updated 2 years ago
- pyJARM is a library for doing JARM fingerprinting using python☆50Updated 9 months ago
- A Python application to filter and transfer Zeek logs to Elastic/OpenSearch+Humio. This app can also output pure JSON logs to stdout for…☆38Updated 3 years ago
- Pythonic way to work with the warning lists defined there: https://github.com/MISP/misp-warninglists☆35Updated 2 weeks ago
- Carving tool based in Radare2 & Yara☆17Updated 7 years ago
- Converting data from services like Censys and Shodan to a common data model☆50Updated last week
- Yara rules to be used with the Burp Yara-Scanner extension☆49Updated 3 years ago
- Yara rules for detecting malware☆23Updated 4 months ago
- This tool maps a file's behavior on MITRE ATT&CK matrix.☆59Updated 5 years ago
- Tools used by CSIRT and especially in the scope of CNW☆17Updated last week
- Website crawler with YARA detection☆90Updated 2 years ago