Yara

Open-source projects categorized as Yara

Top 23 Yara Open-Source Projects

  • yara

    The pattern matching swiss knife

  • Project mention: Ask HN: Regex on a File or Stream | news.ycombinator.com | 2024-03-06
  • awesome-yara

    A curated list of awesome YARA rules, tools, and people.

  • InfluxDB

    Power Real-Time Data Analytics at Scale. Get real-time insights from all types of time series data with InfluxDB. Ingest, query, and analyze billions of data points in real-time with unbounded cardinality.

    InfluxDB logo
  • Loki

    Loki - Simple IOC and YARA Scanner (by Neo23x0)

  • Project mention: My Boss Downloaded and Opened a .lnk File and Installed a Malware in His Device | /r/computerforensics | 2023-06-06

    You should run a tool like loki for ioc scanning. This will identify persistence https://github.com/Neo23x0/Loki

  • signature-base

    YARA signature and IOC database for my scanners and tools

  • Project mention: Xzbot: Notes, honeypot, and exploit demo for the xz backdoor (CVE-2024-3094) | news.ycombinator.com | 2024-04-01

    > It doesn't matter.

    To understand the exact behavior and extend of the backdoor, this does matter. An end to end proof of how it works is exactly what was needed.

    > A way to check if servers are vulnerable is probably by querying the package manager

    Yes, this has been know since the initial report + later discovering what exact strings are present for the payload.

    https://github.com/Neo23x0/signature-base/blob/master/yara/b...

    > Not very sophisticated, but it'll work.

    Unfortunately, we live in a world with closed-servers and appliances - being able as a customer or pen tester rule out certain class of security issues without having the source/insights available is usually desirable.

  • DIE-engine

    DIE engine

  • APKiD

    Android Application Identifier for Packers, Protectors, Obfuscators and Oddities - PEiD for Android

  • malware-ioc

    Indicators of Compromises (IOC) of our various investigations

  • WorkOS

    The modern identity platform for B2B SaaS. The APIs are flexible and easy-to-use, supporting authentication, user identity, and complex enterprise features like SSO and SCIM provisioning.

    WorkOS logo
  • yarGen

    yarGen is a generator for YARA rules

  • YaraHunter

    🔍🔍 Malware scanner for cloud-native, as part of CI/CD and at Runtime 🔍🔍

  • Ukraine-Cyber-Operations

    Curated Intelligence is working with analysts from around the world to provide useful information to organisations in Ukraine looking for additional free threat intelligence. Slava Ukraini. Glory to Ukraine.

  • strelka

    Real-time, container-based file scanning at enterprise scale (by target)

  • ThreatIngestor

    Extract and aggregate threat intelligence.

  • reversinglabs-yara-rules

    ReversingLabs YARA Rules

  • yara-python

    The Python interface for YARA

  • ImHex-Patterns

    Hex patterns, include patterns and magic files for the use with the ImHex Hex Editor

  • iocextract

    Defanged Indicator of Compromise (IOC) Extractor.

  • S1EM

    This project is a SIEM with SIRP and Threat Intel, all in one.

  • Project mention: Homelab Cybersecurity Idea | /r/homelab | 2023-04-28

    Also have an instance of S1EM - https://github.com/V1D1AN/S1EM - running, monitoring my home LAN, firewall etc. It's huge overkill, and your machine may struggle to run it if you ran anything else with it, but might be worth looking at.

  • binlex

    A Binary Genetic Traits Lexer Framework

  • go-yara

    Go bindings for YARA

  • Project mention: Best regexp alternative for Go. Benchmarks. Plots. | dev.to | 2023-08-26

    go-yara - A tool for identifying and classifying malware samples. Although YARA has functionality for templating and regular expressions, it is very limited, so I will not include this library in the upcoming tests.

  • sauron

    A minimalistic cross-platform malware scanner with non-blocking realtime filesystem monitoring using YARA rules. (by evilsocket)

  • YAMA

    Yet Another Memory Analyzer for malware detection

  • Project mention: YAMA: Yet Another Memory Analyzer for malware detection | /r/blueteamsec | 2023-08-14
  • fleur

    Fleur implements a Bloom Filter library in C that is fully compatible with DCSO's Go and python implementations.

  • wafaray

    Enhance your malware detection with WAF + YARA (WAFARAY)

  • SaaSHub

    SaaSHub - Software Alternatives and Reviews. SaaSHub helps you find the best software and product alternatives

    SaaSHub logo
NOTE: The open source projects on this list are ordered by number of github stars. The number of mentions indicates repo mentiontions in the last 12 Months or since we started tracking (Dec 2020).

Yara related posts

Index

What are some of the best open-source Yara projects? This list will help you:

Project Stars
1 yara 7,632
2 awesome-yara 3,245
3 Loki 3,219
4 signature-base 2,329
5 DIE-engine 2,101
6 APKiD 1,895
7 malware-ioc 1,503
8 yarGen 1,447
9 YaraHunter 1,229
10 Ukraine-Cyber-Operations 908
11 strelka 796
12 ThreatIngestor 781
13 reversinglabs-yara-rules 688
14 yara-python 622
15 ImHex-Patterns 532
16 iocextract 485
17 S1EM 385
18 binlex 384
19 go-yara 342
20 sauron 177
21 YAMA 166
22 fleur 116
23 wafaray 106

Sponsored
SaaSHub - Software Alternatives and Reviews
SaaSHub helps you find the best software and product alternatives
www.saashub.com