🔍YARA Rules
YARA signature and IOC database for my scanners and tools
YARA malware query accelerator (web frontend)
This repository is for Indicators of Compromise (IOCs) from Zscaler ThreatLabz public reports
Sophos-originated indicators-of-compromise from published reports
Indicators of Compromises (IOC) of our various investigations
Sandman is a NTP based backdoor for hardened networks.
blint is a Binary Linter that checks the security properties and capabilities of your executables. It can also generate a Software Bill-of-Materials (SBOM) for supported binaries.
Linux based vulnerabilities (CVE) exploit detection through runtime security using Falco/Osquery/Yara/Sigma
A list of python tools to help create an OPSEC-safe Cobalt Strike profile.
Collection of YARA signatures from individual research
Virus.xcheck is a Python tool designed to bulk verify the existence of file hashes in the Virus Exchange database and fetch download URLs for malware analysis.
Detection in the form of Yara, Snort and ClamAV signatures.


