


A collection of Tools and Rules for decoding Brute Ratel C4 badgers

Hunts for potential malware downloads and suspicious domain calls via common Windows LOLBins using YARA rules and Nexthink telemetry modules.

A continuously updated collection of threat intelligence indicators of compromise (IOCs), including YARA rules, for detecting and tracking malware…

Collection of private Yara rules.

Collection of YARA rules designed for usage through VirusTotal.com.

A collection of my yara rules


Repository of Yara Rules

Yara Rules for Modern Malware

A YARA rules repository continuously updated for monitoring the old and new threats from articles, incidents responses ...

🦅 ZeroScout: The Autonomous Local & Cloud Threat Hunter. Visualize attacks in a live War Room, identify APT groups via Genetic Analysis, and…

Dynamically generated Suricata rules from real-time threat feeds

Tool that gathers a customizable set of ETW telemetry and generates user-defined detections

Security sensor for realtime threat detection and protection

Open-source Windows kernel-level EDR lab for understanding and testing detection methods against process injection, credential dumping, and other…