All Projects → yara-rules → Similar Projects or Alternatives

468 Open source projects that are alternatives of or similar to yara-rules

Signature Base
Signature base for my scanner tools
Stars: ✭ 1,212 (+9223.08%)
Mutual labels:  dfir, yara, threat-intelligence
Malcom
Malcom - Malware Communications Analyzer
Stars: ✭ 988 (+7500%)
Analyzer
🔍 Offline Analyzer for extracting features, artifacts and IoCs from Windows, Linux, Android, iPhone, Blackberry, macOS binaries, emails and more
Stars: ✭ 108 (+730.77%)
Python Iocextract
Defanged Indicator of Compromise (IOC) Extractor.
Stars: ✭ 300 (+2207.69%)
Mutual labels:  dfir, yara, threat-intelligence
Threatingestor
Extract and aggregate threat intelligence.
Stars: ✭ 439 (+3276.92%)
Mutual labels:  dfir, yara, threat-intelligence
Loki
Loki - Simple IOC and Incident Response Scanner
Stars: ✭ 2,217 (+16953.85%)
Mutual labels:  dfir, yara, yara-rules
static file analysis
Analysis of file (doc, pdf, exe, ...) in deep (emmbedded file(s)) with clamscan and yara rules
Stars: ✭ 34 (+161.54%)
Mutual labels:  malware-analysis, yara, yara-rules
factual-rules-generator
Factual-rules-generator is an open source project which aims to generate YARA rules about installed software from a machine.
Stars: ✭ 62 (+376.92%)
Mutual labels:  dfir, yara, yara-rules
Freki
🐺 Malware analysis platform
Stars: ✭ 285 (+2092.31%)
freki
🐺 Malware analysis platform
Stars: ✭ 327 (+2415.38%)
threat-intel
Signatures and IoCs from public Volexity blog posts.
Stars: ✭ 130 (+900%)
Mutual labels:  yara, yara-rules, threat-intelligence
yara-validator
Validates yara rules and tries to repair the broken ones.
Stars: ✭ 37 (+184.62%)
Mutual labels:  dfir, yara, yara-rules
Misp
MISP (core software) - Open Source Threat Intelligence and Sharing Platform
Stars: ✭ 3,485 (+26707.69%)
Icewater
16,432 Free Yara rules created by
Stars: ✭ 324 (+2392.31%)
Mutual labels:  malware-analysis, yara
Multiscanner
Modular file scanning/analysis framework
Stars: ✭ 494 (+3700%)
Mutual labels:  malware-analysis, yara
Pecli
CLI tool to analyze PE files
Stars: ✭ 46 (+253.85%)
Mutual labels:  malware-analysis, yara
Yargen
yarGen is a generator for YARA rules
Stars: ✭ 795 (+6015.38%)
Mutual labels:  malware-analysis, yara
Matire
Malware Analysis, Threat Intelligence and Reverse Engineering: LABS
Stars: ✭ 55 (+323.08%)
Awesome Yara
A curated list of awesome YARA rules, tools, and people.
Stars: ✭ 1,394 (+10623.08%)
Mutual labels:  malware-analysis, yara
pyc2bytecode
A Python Bytecode Disassembler helping reverse engineers in dissecting Python binaries by disassembling and analyzing the compiled python byte-code(.pyc) files across all python versions (including Python 3.10.*)
Stars: ✭ 70 (+438.46%)
Docker Misp
Automated Docker MISP container - Malware Information Sharing Platform and Threat Sharing
Stars: ✭ 148 (+1038.46%)
Osweep
Don't Just Search OSINT. Sweep It.
Stars: ✭ 225 (+1630.77%)
awesome-malware-analysis
Defund the Police.
Stars: ✭ 9,181 (+70523.08%)
Yobi
Yara Based Detection Engine for web browsers
Stars: ✭ 39 (+200%)
Mutual labels:  dfir, yara
Pepper
An open source script to perform malware static analysis on Portable Executable
Stars: ✭ 250 (+1823.08%)
Mutual labels:  malware-analysis, yara
rtfsig
A tool to help malware analysts signature unique parts of RTF documents
Stars: ✭ 28 (+115.38%)
Mutual labels:  malware-analysis, yara-rules
calamity
A script to assist in processing forensic RAM captures for malware triage
Stars: ✭ 24 (+84.62%)
Mutual labels:  dfir, malware-analysis
Misp Warninglists
Warning lists to inform users of MISP about potential false-positives or other information in indicators
Stars: ✭ 184 (+1315.38%)
Mutual labels:  dfir, threat-intelligence
CCXDigger
The CyberCX Digger project is designed to help Australian organisations determine if they have been impacted by certain high profile cyber security incidents. Digger provides threat hunting functionality packaged in a simple-to-use tool, allowing users to detect certain attacker activities; all for free.
Stars: ✭ 45 (+246.15%)
Mutual labels:  dfir, threat-intelligence
Stoq
An open source framework for enterprise level automated analysis.
Stars: ✭ 352 (+2607.69%)
Mutual labels:  malware-analysis, yara
MalwareHashDB
Malware hashes for open source projects.
Stars: ✭ 31 (+138.46%)
Apkid
Android Application Identifier for Packers, Protectors, Obfuscators and Oddities - PEiD for Android
Stars: ✭ 999 (+7584.62%)
Mutual labels:  malware-analysis, yara
Besafe
BeSafe is robust threat analyzer which help to protect your desktop environment and know what's happening around you
Stars: ✭ 21 (+61.54%)
Malware Feed
Bringing you the best of the worst files on the Internet.
Stars: ✭ 69 (+430.77%)
yarasploit
YaraSploit is a collection of Yara rules generated from Metasploit framework shellcodes.
Stars: ✭ 31 (+138.46%)
Mutual labels:  yara, yara-rules
Intelowl
Intel Owl: analyze files, domains, IPs in multiple ways from a single API at scale
Stars: ✭ 2,114 (+16161.54%)
Awesome Csirt
Awesome CSIRT is an curated list of links and resources in security and CSIRT daily activities.
Stars: ✭ 132 (+915.38%)
Threat Hunting
Personal compilation of APT malware from whitepaper releases, documents and own research
Stars: ✭ 219 (+1584.62%)
Analyst Arsenal
A toolkit for Security Researchers
Stars: ✭ 112 (+761.54%)
Judge-Jury-and-Executable
A file system forensics analysis scanner and threat hunting tool. Scans file systems at the MFT and OS level and stores data in SQL, SQLite or CSV. Threats and data can be probed harnessing the power and syntax of SQL.
Stars: ✭ 66 (+407.69%)
Mutual labels:  yara, yara-rules
Malice
VirusTotal Wanna Be - Now with 100% more Hipster
Stars: ✭ 1,253 (+9538.46%)
Mutual labels:  dfir, malware-analysis
pyarascanner
A simple many-rules to many-files YARA scanner for incident response or malware zoos.
Stars: ✭ 23 (+76.92%)
Mutual labels:  dfir, yara
Malware-Sample-Sources
Malware Sample Sources
Stars: ✭ 214 (+1546.15%)
Mthc
All-in-one bundle of MISP, TheHive and Cortex
Stars: ✭ 134 (+930.77%)
Mutual labels:  dfir, threat-intelligence
Hyara
Yara rule making tool (IDA Pro & Binary Ninja & Cutter Plugin)
Stars: ✭ 142 (+992.31%)
Mutual labels:  yara, yara-rules
Cirtkit
Tools for the Computer Incident Response Team 💻
Stars: ✭ 117 (+800%)
Mutual labels:  dfir, malware-analysis
PEiD
Yet another implementation of PEiD with yara
Stars: ✭ 12 (-7.69%)
Mutual labels:  yara, yara-rules
yara-forensics
Set of Yara rules for finding files using magics headers
Stars: ✭ 115 (+784.62%)
Mutual labels:  yara, yara-rules
yara
Malice Yara Plugin
Stars: ✭ 27 (+107.69%)
Mutual labels:  malware-analysis, yara
python-icap-yara
An ICAP Server with yara scanner for URL and content.
Stars: ✭ 50 (+284.62%)
Mutual labels:  malware-analysis, yara
binlex
A Binary Genetic Traits Lexer Framework
Stars: ✭ 303 (+2230.77%)
Mutual labels:  malware-analysis, yara
MindMaps
#ThreatHunting #DFIR #Malware #Detection Mind Maps
Stars: ✭ 224 (+1623.08%)
Mutual labels:  dfir, threat-intelligence
pftriage
Python tool and library to help analyze files during malware triage and analysis.
Stars: ✭ 77 (+492.31%)
Mutual labels:  dfir, malware-analysis
Lw Yara
Yara Ruleset for scanning Linux servers for shells, spamming, phishing and other webserver baddies
Stars: ✭ 78 (+500%)
Mutual labels:  dfir, yara
malware-persistence
Collection of malware persistence and hunting information. Be a persistent persistence hunter!
Stars: ✭ 109 (+738.46%)
PhishingKit-Yara-Search
Yara scan Phishing Kit's Zip archive(s)
Stars: ✭ 24 (+84.62%)
Mutual labels:  yara, yara-rules
ThreatKB
Knowledge base workflow management for YARA rules and C2 artifacts (IP, DNS, SSL) (ALPHA STATE AT THE MOMENT)
Stars: ✭ 68 (+423.08%)
Mutual labels:  yara, yara-rules
best-practices-in-threat-intelligence
Best practices in threat intelligence
Stars: ✭ 38 (+192.31%)
Mutual labels:  threat-intelligence
rstthreats
Aggregated Indicators of Compromise collected and cross-verified from multiple open and community-supported sources, enriched and ranked using our intelligence platform for you. Threat Intelligence, Threat feed, Open source feed.
Stars: ✭ 17 (+30.77%)
Mutual labels:  threat-intelligence
OSINT-Brazuca
Repositório criado com intuito de reunir informações, fontes(websites/portais) e tricks de OSINT dentro do contexto Brasil.
Stars: ✭ 508 (+3807.69%)
Mutual labels:  threat-intelligence
1-60 of 468 similar projects