
fibratus
Security sensor for realtime threat detection and protection

Security sensor for realtime threat detection and protection

A collection of Tools and Rules for decoding Brute Ratel C4 badgers

Open-source Windows kernel-level EDR lab for understanding and testing detection methods against process injection, credential dumping, and other…

Hunts for potential malware downloads and suspicious domain calls via common Windows LOLBins using YARA rules and Nexthink telemetry modules.

A continuously updated collection of threat intelligence indicators of compromise (IOCs), including YARA rules, for detecting and tracking malware…

Collection of private Yara rules.

Repository of Yara Rules

A YARA rules repository continuously updated for monitoring the old and new threats from articles, incidents responses ...

Collection of YARA rules designed for usage through VirusTotal.com.

Yara Rules for Modern Malware

Tool that gathers a customizable set of ETW telemetry and generates user-defined detections


A collection of my yara rules

Dynamically generated Suricata rules from real-time threat feeds


🦅 ZeroScout: The Autonomous Local & Cloud Threat Hunter. Visualize attacks in a live War Room, identify APT groups via Genetic Analysis, and…