Yara-Rules Repository Logo

Yara-Rules Repository

0
Free
Visit Website

Repository of YARA rules to accompany the Trellix ATR blogposts & investigations. We endorse contributing to improve our rules - please send us a pull request with your proposal. In case you discovered a false positive with our rules, please share with us your details in an issue report and we’ll try to improve our Yara rules. Happy Hunting!

FEATURES

ALTERNATIVES

A powerful tool for identifying and exploiting Cross-Site Scripting (XSS) vulnerabilities.

A binary analysis and management framework for organizing and analyzing malware and exploit samples, and creating plugins.

PinCTF is a tool for using Intel's Pin Tool to instrument reverse engineering binaries and count instructions.

A .Net wrapper library for the native Yara library with interoperability and portability features.

ILSpy is the open-source .NET assembly browser and decompiler with various decompiler frontends and features.

OCyara performs OCR on image files and scans them for matches to Yara rules, supporting Debian-based Linux distros.

Platform for uploading, searching, and downloading malware samples.

YARA rules for ProcFilter to detect malware and threats

PINNED