YaraSyntaxYARA package for Sublime Text
Stars: ✭ 15 (-78.57%)
yara-rustRust bindings for VirusTotal/Yara
Stars: ✭ 35 (-50%)
StrelkaReal-time, container-based file scanning at enterprise scale
Stars: ✭ 387 (+452.86%)
yarasploitYaraSploit is a collection of Yara rules generated from Metasploit framework shellcodes.
Stars: ✭ 31 (-55.71%)
r2yarar2yara - Module for Yara using radare2 information
Stars: ✭ 30 (-57.14%)
MultiscannerModular file scanning/analysis framework
Stars: ✭ 494 (+605.71%)
DidierstevenssuitePlease no pull requests for this repository. Thanks!
Stars: ✭ 856 (+1122.86%)
yara-validatorValidates yara rules and tries to repair the broken ones.
Stars: ✭ 37 (-47.14%)
HamburglarHamburglar -- collect useful information from urls, directories, and files
Stars: ✭ 321 (+358.57%)
YobiYara Based Detection Engine for web browsers
Stars: ✭ 39 (-44.29%)
binlexA Binary Genetic Traits Lexer Framework
Stars: ✭ 303 (+332.86%)
yara-rulesYara rules written by me, for free use.
Stars: ✭ 13 (-81.43%)
Operation WocaoOperation Wocao - Indicators of Compromise
Stars: ✭ 29 (-58.57%)
yaramanagerSimple yara rule manager
Stars: ✭ 60 (-14.29%)
PeframePEframe is a open source tool to perform static analysis on Portable Executable malware and malicious MS Office documents.
Stars: ✭ 472 (+574.29%)
python-icap-yaraAn ICAP Server with yara scanner for URL and content.
Stars: ✭ 50 (-28.57%)
ApkidAndroid Application Identifier for Packers, Protectors, Obfuscators and Oddities - PEiD for Android
Stars: ✭ 999 (+1327.14%)
swisscheeseExploits for YARA 3.7.1 & 3.8.1
Stars: ✭ 26 (-62.86%)
StoqAn open source framework for enterprise level automated analysis.
Stars: ✭ 352 (+402.86%)
detectionDetection in the form of Yara, Snort and ClamAV signatures.
Stars: ✭ 70 (+0%)
YargenyarGen is a generator for YARA rules
Stars: ✭ 795 (+1035.71%)
yara-forensicsSet of Yara rules for finding files using magics headers
Stars: ✭ 115 (+64.29%)
Yara RulesRepository of YARA rules made by McAfee ATR Team
Stars: ✭ 283 (+304.29%)
MqueryYARA malware query accelerator (web frontend)
Stars: ✭ 264 (+277.14%)
ImHex-PatternsHex patterns, include patterns and magic files for the use with the ImHex Hex Editor
Stars: ✭ 192 (+174.29%)
freki🐺 Malware analysis platform
Stars: ✭ 327 (+367.14%)
Malware IocIndicators of Compromises (IOC) of our various investigations
Stars: ✭ 955 (+1264.29%)
MeltingPotA tool to cluster similar executables (PEs, DEXs, and etc), extract common signature, and generate Yara patterns for malware detection.
Stars: ✭ 23 (-67.14%)
static file analysisAnalysis of file (doc, pdf, exe, ...) in deep (emmbedded file(s)) with clamscan and yara rules
Stars: ✭ 34 (-51.43%)
PecliCLI tool to analyze PE files
Stars: ✭ 46 (-34.29%)
apooxmlGenerate YARA rules for OOXML documents.
Stars: ✭ 34 (-51.43%)
YaraThe pattern matching swiss knife
Stars: ✭ 5,209 (+7341.43%)
ThreatKBKnowledge base workflow management for YARA rules and C2 artifacts (IP, DNS, SSL) (ALPHA STATE AT THE MOMENT)
Stars: ✭ 68 (-2.86%)
IocsIoC's, PCRE's, YARA's etc
Stars: ✭ 15 (-78.57%)
factual-rules-generatorFactual-rules-generator is an open source project which aims to generate YARA rules about installed software from a machine.
Stars: ✭ 62 (-11.43%)
ThreatingestorExtract and aggregate threat intelligence.
Stars: ✭ 439 (+527.14%)
FunnelFunnel is a lightweight yara-based feed scraper
Stars: ✭ 38 (-45.71%)
HyaraYara rule making tool (IDA Pro & Binary Ninja & Cutter Plugin)
Stars: ✭ 142 (+102.86%)
Yara PythonThe Python interface for YARA
Stars: ✭ 368 (+425.71%)
Holmes TotemInvestigation Planner for fast running analysis with predictable execution time. For example, static analysis.
Stars: ✭ 25 (-64.29%)
YaraSharpC# wrapper around the Yara pattern matching library
Stars: ✭ 29 (-58.57%)
Icewater16,432 Free Yara rules created by
Stars: ✭ 324 (+362.86%)
moleYara powered NIDS with high speed packet capture powered by PF_RING
Stars: ✭ 51 (-27.14%)
RpotReal-time Packet Observation Tool
Stars: ✭ 38 (-45.71%)
yaraMalice Yara Plugin
Stars: ✭ 27 (-61.43%)
Python IocextractDefanged Indicator of Compromise (IOC) Extractor.
Stars: ✭ 300 (+328.57%)
yara-parserTools for parsing rulesets using the exact grammar as YARA. Written in Go.
Stars: ✭ 69 (-1.43%)
Ghidra scriptsScripts for the Ghidra software reverse engineering suite.
Stars: ✭ 732 (+945.71%)
Freki🐺 Malware analysis platform
Stars: ✭ 285 (+307.14%)
BinaryalertBinaryAlert: Serverless, Real-time & Retroactive Malware Detection.
Stars: ✭ 1,125 (+1507.14%)
YarasigsVarious Yara signatures (possibly to be included in a release later).
Stars: ✭ 59 (-15.71%)
BinjadockAn extendable, tabbed, dockable UI widget plugin for BinaryNinja https://binary.ninja.
Stars: ✭ 34 (-51.43%)
ManalyzeA static analyzer for PE executables.
Stars: ✭ 701 (+901.43%)