wrayjustin / yaidsLinks
YAIDS - Yara-Based IDS - Yara as an Intrusion Detection System / Yet Another Intrusion Detection System - An Intrusion Detection System (IDS) utilizing Yara and multi-threading
☆26Updated 3 years ago
Alternatives and similar repositories for yaids
Users that are interested in yaids are comparing it to the libraries listed below
Sorting:
- Factual-rules-generator is an open source project which aims to generate YARA rules about installed software from a machine.☆76Updated 3 years ago
- Yara rules for malicious javascript files from public repositories or written by me.☆13Updated 4 years ago
- A collection of Indicators of Compromise (IoCs), most aligning with samples derived from the signatures in the YARA-Signatures repo☆30Updated 5 years ago
- Lightweight Python-Based Malware Analysis Pipeline☆36Updated 2 months ago
- Utility for parsing Bro log files into CSV or JSON format☆42Updated 2 years ago
- Carving tool based in Radare2 & Yara☆16Updated 7 years ago
- Check IOC provided by a MISP instance on Suricata events☆18Updated 6 years ago
- Python based CLI for MalwareBazaar☆39Updated 4 months ago
- Knowledge base workflow management for YARA rules and C2 artifacts (IP, DNS, SSL) (ALPHA STATE AT THE MOMENT)☆103Updated 4 months ago
- A set of YARA rules for the AIL framework to detect leak or information disclosure☆40Updated 10 months ago
- Validates yara rules and tries to repair the broken ones.☆40Updated 5 years ago
- ☆22Updated 4 years ago
- Collection of YARA signatures from individual research☆46Updated 2 years ago
- A collection of my public YARA signatures for various malware families☆30Updated last year
- A Python application to filter and transfer Zeek logs to Elastic/OpenSearch+Humio. This app can also output pure JSON logs to stdout for…☆38Updated 3 years ago
- ☆25Updated 3 years ago
- BGP ranking is a free software to calculate the security ranking of Internet Service Provider (ASN)☆75Updated 2 months ago
- Some YARA rules i will add from time to time☆66Updated 2 years ago
- Client library for the mwdb service by CERT Polska.☆42Updated 2 months ago
- Parallel ssdeep clustering kit☆20Updated 7 years ago
- Merge all Yara rules from official Yara github repository in one .yar file☆30Updated 7 years ago
- pyJARM is a library for doing JARM fingerprinting using python☆50Updated 8 months ago
- Threat intelligence and threat detection indicators (IOC, IOA)☆52Updated 5 years ago
- Globally distributed honeypots and HoneyNets IOCs and file reversing☆16Updated last year
- Pythonic way to work with the warning lists defined there: https://github.com/MISP/misp-warninglists☆34Updated last week
- Zeek Extension to Collect Metadata for Profiling of Endpoints and Proxies☆37Updated 2 months ago
- Fang and defang indicators of compromise. You can test this project in a GUI here: http://ioc-fanger.hightower.space .☆65Updated 2 years ago
- Repository with selected IOCs and YARA rules for threat hunting.☆35Updated 6 months ago
- Repository of all the sites related to infosec IP/Domain/Hash/SSL/etc OSINT and eventually will include more.☆69Updated last month
- This tool maps a file's behavior on MITRE ATT&CK matrix.☆59Updated 5 years ago