
sigma-rules
Sigma rules from Joe Security

Sigma rules from Joe Security


A YARA rules repository continuously updated for monitoring the old and new threats from articles, incidents responses ...

Some Threat Hunting queries useful for blue teamers

Sigma rules to share with the community

A framework for PowerShell and PoshSec scripts for network management, security, and maintenance.

Collection of YARA rules designed for usage through VirusTotal.com.

Yara Rules for Modern Malware

A framework and taxonomy for identifying, classifying, and reasoning about detection logic bugs in SIEM, EDR, and XDR rules, with concrete examples…

Slides from various conference talks

Community Detection Signature Build and Distribution Pipeline for YARA, Suricata, Snort and Sigma


Tracking PinTheft (CVE-2026-43494, CVE-2026-43502), the RDS zerocopy double-free privilege escalation


A repository to release detection rules to the public

Project that brings together several pentest tools