ThreatIngestor
YaraHunter
ThreatIngestor | YaraHunter | |
---|---|---|
1 | 3 | |
786 | 1,230 | |
1.9% | 0.4% | |
7.6 | 9.6 | |
3 months ago | 3 days ago | |
Python | Go | |
GNU General Public License v3.0 only | Apache License 2.0 |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
ThreatIngestor
YaraHunter
- Scans container images, running Docker containers and filesystems to find indicators of malware
- YaRadare
-
Introducing YaRadare - YARA scanning for cloud-native apps (containers)
We've released a new open source project - https://github.com/deepfence/YaRadare - for scanning cloud native applications (container images) for malware using the YARA rulesets.
What are some alternatives?
C2IntelFeeds - Automatically created C2 Feeds
signature-base - YARA signature and IOC database for my scanners and tools
sysmon-config - Advanced Sysmon ATT&CK configuration focusing on Detecting the Most Techniques per Data source in MITRE ATT&CK, Provide Visibility into Forensic Artifact Events for UEBA, Detect Exploitation events with wide CVE Coverage, and Risk Scoring of CVE, UEBA, Forensic, and MITRE ATT&CK Events.
malware-ioc - Indicators of Compromises (IOC) of our various investigations
harpoon
radare2 - UNIX-like reverse engineering framework and command-line toolset
misp-warninglists - Warning lists to inform users of MISP about potential false-positives or other information in indicators
hawk - Multi Cloud Antivirus Scanning API using YARA and CLAMAV for AWS S3, Azure Blob Storage and GCP Cloud Storage
StalkPhish - StalkPhish - The Phishing kits stalker, harvesting phishing kits for investigations.
ransomwhere - A PoC ransomware sample to test out your ransomware response strategy.
cURL_for_OSINT - cURL Tool Usage for OSINT (Open-Source Intelligence)
uzen - Website crawler with YARA detection