


Yara Rules for Modern Malware

Scripts to detect Fast-Flux and DGA using DNS query responses

A repository to release detection rules to the public

Hashes and shim versions for the UEFI Secure Boot shims affected by CVE-2026-8863


Sigma Rule for CVE-2025-49666

IoCs and detection rules for the Notepad++ supply chain attack (CVE-2025-15556) — Lotus Blossom APT, June–December 2025. Includes Falcon LogScale…

A centralized and enhanced memory analysis platform

Open platform for modelling, collection and exchange of knowledge

CrowdStrike Feed Management System. CrowdFMS is a framework for automating collection and processing of samples from VirusTotal, by leveraging the…

AIL framework - Analysis Information Leak framework. Project moved to https://github.com/ail-project

Automated, Collection, and Enrichment Platform

Tools collection to explore CVE and theirs associated data.

Automates OSINT data collection and analysis for threat intelligence, attack surface mapping, and reconnaissance. Integrates 200+ modules for DNS,…

IOC and YARA-based scanner for detecting indicators of compromise via file name regex, YARA signatures, hash matching, and C2 back-connect checks on…