
YARA_Rules
Curated signature-rule collection for detecting and classifying malicious files via pattern matching, with CLI instructions for scanning files and…
curated-resourcesdefensive-toolsincident-response+3
65

Curated signature-rule collection for detecting and classifying malicious files via pattern matching, with CLI instructions for scanning files and…

Timestomp Tool to flatten MAC times with a specific timestamp

Fileless ring 3 rootkit with installer and persistence that hides processes, files, network connections, etc.

Redirects EDR working folders using a Bind Filter (bindflt.sys) to bypass endpoint detection, corrupt EDR services, or replace with…

A defense tool - detect web shells in local directories via md5sum