
fibratus
Security sensor for realtime threat detection and protection

Security sensor for realtime threat detection and protection

A collection of Tools and Rules for decoding Brute Ratel C4 badgers

Curated database of vulnerable and malicious Windows drivers with YARA, Sigma, ClamAV, and Sysmon detection rules for proactive threat hunting and…

Open-source Windows kernel-level EDR lab for understanding and testing detection methods against process injection, credential dumping, and other…

Hunts for potential malware downloads and suspicious domain calls via common Windows LOLBins using YARA rules and Nexthink telemetry modules.

A continuously updated collection of threat intelligence indicators of compromise (IOCs), including YARA rules, for detecting and tracking malware…

Collection of private Yara rules.

Django application that performs SAST and Malware Analysis for Android APKs

Automatically create YARA rules from malicious documents.

IDA python plugin to scan binary with Yara rules

A guide on how to write fast and memory friendly YARA rules

Repository of Yara Rules

A YARA rules repository continuously updated for monitoring the old and new threats from articles, incidents responses ...

YARA rule analyzer to improve rule quality and performance

Knowledge base workflow management for YARA rules and C2 artifacts (IP, DNS, SSL) (ALPHA STATE AT THE MOMENT)

Use YARA rules on Time Travel Debugging traces

Collection of YARA rules designed for usage through VirusTotal.com.

Rules shared by the community from 100 Days of YARA 2024