wrayjustin / yaids
YAIDS - Yara-Based IDS - Yara as an Intrusion Detection System / Yet Another Intrusion Detection System - An Intrusion Detection System (IDS) utilizing Yara and multi-threading
☆22Updated 2 years ago
Related projects ⓘ
Alternatives and complementary repositories for yaids
- Yara rules for malicious javascript files from public repositories or written by me.☆12Updated 3 years ago
- A Self-Contained Open-Source Cyberattack Experimentation Testbed☆35Updated 3 weeks ago
- Threat Detection Rules (Snort/Sigma/Yara)☆13Updated 9 months ago
- Factual-rules-generator is an open source project which aims to generate YARA rules about installed software from a machine.☆76Updated 2 years ago
- A collection of my public YARA signatures for various malware families☆29Updated 2 months ago
- ☆22Updated 3 years ago
- Carving tool based in Radare2 & Yara☆15Updated 6 years ago
- ☆24Updated 2 years ago
- Lightweight Python-Based Malware Analysis Pipeline☆29Updated last month
- A map displaying threat actors from the misp-galaxy☆32Updated last year
- Links to malware-related YARA rules☆14Updated 2 years ago
- Cont3xt intends to centralize and simplify a structured approach to gathering contextual intelligence in support of technical investigati…☆36Updated 8 months ago
- A set of PCAPs used to test the parsers used by Malcolm. Also, a curated list of PCAP collections I've found online.☆32Updated this week
- Repository of all the sites related to infosec IP/Domain/Hash/SSL/etc OSINT and eventually will include more.☆65Updated 6 months ago
- CSIRT Tooling: Best Practices in Developing, Maintaining and Distributing Open Source Tools☆16Updated 2 years ago
- CyCAT.org taxonomies☆14Updated 3 years ago
- A collection of Indicators of Compromise (IoCs), most aligning with samples derived from the signatures in the YARA-Signatures repo☆30Updated 4 years ago
- Check IOC provided by a MISP instance on Suricata events☆17Updated 5 years ago
- Pythonic way to work with the galaxies defined there: https://github.com/MISP/misp-galaxy☆19Updated this week
- Repository of tools, YARA rules, and code-snippets from Stairwell's research team.☆22Updated 9 months ago
- Python based CLI for MalwareBazaar☆36Updated 3 weeks ago
- Threat hunting with EQL and Bro. This repo contains modifications to EQL and EQLLib to use BRO logs.☆8Updated 5 years ago
- This repository regroups the Yara Rules for the Unprotect Project☆25Updated 4 years ago
- A set of YARA rules for the AIL framework to detect leak or information disclosure☆37Updated 4 months ago
- CyCAT.org API back-end server including crawlers☆30Updated last year
- ☆23Updated 7 months ago
- This repository maintains the SaltStack state files for the REMnux distro.☆39Updated last week
- Conceptual Methods for Finding Commonalities in Macho Files☆12Updated 8 months ago
- Steezy - Ghetto Yara Generation☆15Updated last year