
fibratus
Security sensor for realtime threat detection and protection

Security sensor for realtime threat detection and protection

A collection of Tools and Rules for decoding Brute Ratel C4 badgers

Curated repository of threat intelligence feeds, IoC lists, YARA rules, and DFIR tool references for SOC/CERT/CTI detection and incident response.

Curated database of vulnerable and malicious Windows drivers with YARA, Sigma, ClamAV, and Sysmon detection rules for proactive threat hunting and…

Hunts for potential malware downloads and suspicious domain calls via common Windows LOLBins using YARA rules and Nexthink telemetry modules.

Collection of private Yara rules.

Automatically create YARA rules from malicious documents.

Curated Indicators of Compromise and YARA rules from Zscaler ThreatLabz public reports for threat hunting, malware research, and detection…

Tool that gathers a customizable set of ETW telemetry and generates user-defined detections

KQL detection rules for Microsoft Sentinel and Defender XDR covering the bikini/exploitarium anonymous disclosure — a personal research archive of…

OpenIOC rules to facilitate hunting for indicators of compromise

IoCs and YARA rules from Threatray's Threat Research

Generate bulk YARA rules from YAML input

🦅 ZeroScout: The Autonomous Local & Cloud Threat Hunter. Visualize attacks in a live War Room, identify APT groups via Genetic Analysis, and…

Detection rules for the Claude Code source leak : 16 Sigma rules, Splunk, Elastic, YARA. Lab-validated on GOAD Light DC02.