YaraHunter
ThreatIngestor
YaraHunter | ThreatIngestor | |
---|---|---|
3 | 1 | |
1,230 | 786 | |
0.4% | 1.9% | |
9.6 | 7.6 | |
3 days ago | 3 months ago | |
Go | Python | |
Apache License 2.0 | GNU General Public License v3.0 only |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
YaraHunter
- Scans container images, running Docker containers and filesystems to find indicators of malware
- YaRadare
-
Introducing YaRadare - YARA scanning for cloud-native apps (containers)
We've released a new open source project - https://github.com/deepfence/YaRadare - for scanning cloud native applications (container images) for malware using the YARA rulesets.
ThreatIngestor
What are some alternatives?
signature-base - YARA signature and IOC database for my scanners and tools
C2IntelFeeds - Automatically created C2 Feeds
malware-ioc - Indicators of Compromises (IOC) of our various investigations
sysmon-config - Advanced Sysmon ATT&CK configuration focusing on Detecting the Most Techniques per Data source in MITRE ATT&CK, Provide Visibility into Forensic Artifact Events for UEBA, Detect Exploitation events with wide CVE Coverage, and Risk Scoring of CVE, UEBA, Forensic, and MITRE ATT&CK Events.
radare2 - UNIX-like reverse engineering framework and command-line toolset
harpoon
hawk - Multi Cloud Antivirus Scanning API using YARA and CLAMAV for AWS S3, Azure Blob Storage and GCP Cloud Storage
misp-warninglists - Warning lists to inform users of MISP about potential false-positives or other information in indicators
ransomwhere - A PoC ransomware sample to test out your ransomware response strategy.
StalkPhish - StalkPhish - The Phishing kits stalker, harvesting phishing kits for investigations.
cURL_for_OSINT - cURL Tool Usage for OSINT (Open-Source Intelligence)
uzen - Website crawler with YARA detection