wrayjustin / yaids
YAIDS - Yara-Based IDS - Yara as an Intrusion Detection System / Yet Another Intrusion Detection System - An Intrusion Detection System (IDS) utilizing Yara and multi-threading
☆23Updated 2 years ago
Alternatives and similar repositories for yaids
Users that are interested in yaids are comparing it to the libraries listed below
Sorting:
- Decloak Linux stealth rootkits hiding data with this simple memory mapped IO investigation tool.☆24Updated 2 years ago
- A set of YARA rules for the AIL framework to detect leak or information disclosure☆38Updated 3 months ago
- Factual-rules-generator is an open source project which aims to generate YARA rules about installed software from a machine.☆76Updated 3 years ago
- A collection of my public YARA signatures for various malware families☆29Updated 7 months ago
- ☆22Updated 4 years ago
- A collection of Indicators of Compromise (IoCs), most aligning with samples derived from the signatures in the YARA-Signatures repo☆29Updated 4 years ago
- Links to malware-related YARA rules☆15Updated 2 years ago
- Static configuration extractor for the Karton framework☆10Updated 4 months ago
- Surface Analysis System on Cloud☆19Updated last year
- Yara rules for malicious javascript files from public repositories or written by me.☆13Updated 3 years ago
- Carving tool based in Radare2 & Yara☆16Updated 6 years ago
- ☆14Updated 6 years ago
- This repository regroups the Yara Rules for the Unprotect Project☆25Updated 4 years ago
- Cont3xt intends to centralize and simplify a structured approach to gathering contextual intelligence in support of technical investigati…☆37Updated last year
- ☆24Updated 2 years ago
- Lightweight Python-Based Malware Analysis Pipeline☆34Updated this week
- An extension of the sigma standard to include security metrics.☆15Updated 2 years ago
- Tweettioc Splunk App☆20Updated 4 years ago
- CyCAT.org API back-end server including crawlers☆29Updated 2 years ago
- Python based CLI for MalwareBazaar☆37Updated 6 months ago
- Repository of all the sites related to infosec IP/Domain/Hash/SSL/etc OSINT and eventually will include more.☆66Updated last year
- This is a repository for the public blog with Labs indicators of compromise.☆10Updated 5 years ago
- Threat Feeds, Threat lists, and regular lists of known IP ranges and domains. It updates every 4 hours.☆16Updated 3 years ago
- YaraScanner is a file pattern-matching tool based on YARA rules.☆57Updated 2 years ago
- Threat Detection Rules (Snort/Sigma/Yara)☆13Updated last year
- Merge all Yara rules from official Yara github repository in one .yar file☆29Updated 6 years ago
- Tracking APT IOCs☆25Updated 4 years ago
- Yara Based Detection Engine for web browsers☆47Updated 3 years ago
- Collection of YARA signatures from individual research☆44Updated last year
- YETI (Your Everyday Threat Intelligence) Integration to Elastic Stack☆16Updated 4 years ago