LOKI Logo

LOKI

0
Free
Updated 11 March 2025
Visit Website

LOKI is a simple IOC and YARA Scanner for Indicators of Compromise Detection. It is based on four detection methods: 1. File Name IOC: Regex match on full file path/name. 2. Yara Rule Check: Yara signature match on file data and process memory. 3. Hash Check: Compares known malicious hashes (MD5, SHA1, SHA256) with scanned files. 4. C2 Back Connect Check: Compares process connection endpoints with C2 IOCs.

FEATURES

SIMILAR TOOLS

A cybersecurity concept categorizing indicators of compromise based on their level of difficulty for threat actors to change.

Repository for detection content with various types of rules and payloads.

A daily collection of IOCs from various sources, including articles and tweets.

A curated list of resources for learning about deploying, managing, and hunting with Microsoft Sysmon.

Knowledge base workflow management dashboard for YARA rules and C2 artifacts.

Real-time monitoring tool for newly issued SSL certificates.

Repository of Yara Rules created by TjNel.

A Python library for handling TAXII v1.x messages and services to enable automated threat intelligence sharing and indicator exchange.

Platform for the latest threat intelligence information

CyberSecTools logoCyberSecTools

Explore the largest curated directory of cybersecurity tools and resources to enhance your security practices. Find the right solution for your domain.

Operated by:

Mandos Cyber • KVK: 97994448

Netherlands • contact@mandos.io

VAT: NL005301434B12

Copyright © 2025 - All rights reserved