YARA yara-rules

Open-source YARA projects categorized as yara-rules

Top 5 YARA yara-rule Projects

  • signature-base

    YARA signature and IOC database for my scanners and tools

  • Project mention: Xzbot: Notes, honeypot, and exploit demo for the xz backdoor (CVE-2024-3094) | news.ycombinator.com | 2024-04-01

    > It doesn't matter.

    To understand the exact behavior and extend of the backdoor, this does matter. An end to end proof of how it works is exactly what was needed.

    > A way to check if servers are vulnerable is probably by querying the package manager

    Yes, this has been know since the initial report + later discovering what exact strings are present for the payload.

    https://github.com/Neo23x0/signature-base/blob/master/yara/b...

    > Not very sophisticated, but it'll work.

    Unfortunately, we live in a world with closed-servers and appliances - being able as a customer or pen tester rule out certain class of security issues without having the source/insights available is usually desirable.

  • reversinglabs-yara-rules

    ReversingLabs YARA Rules

  • InfluxDB

    Power Real-Time Data Analytics at Scale. Get real-time insights from all types of time series data with InfluxDB. Ingest, query, and analyze billions of data points in real-time with unbounded cardinality.

    InfluxDB logo
  • yara4ida

    Unofficial YARA IDA Pro plugin, along with an unparalleled crypto/hash/compression rule set based on Luigi Auriemma's signsrch signatures.

  • audit-node-modules-with-yara

    Audit Node Module folder with YARA rules to identify possible malicious packages hiding in node_moudles

  • Cerebro

    Scripts and lists to help generate YARA friendly string mutations (by stvemillertime)

  • SaaSHub

    SaaSHub - Software Alternatives and Reviews. SaaSHub helps you find the best software and product alternatives

    SaaSHub logo
NOTE: The open source projects on this list are ordered by number of github stars. The number of mentions indicates repo mentiontions in the last 12 Months or since we started tracking (Dec 2020).

YARA yara-rules related posts

  • Xzbot: Notes, honeypot, and exploit demo for the xz backdoor (CVE-2024-3094)

    6 projects | news.ycombinator.com | 1 Apr 2024
  • Exploit Outlook CVE-2023-23397 Yara - to detect .msg files exploiting CVE-2023-23397 in Microsoft Outlook

    1 project | /r/u_Tsofmetasploit | 16 Mar 2023
  • Exploit Outlook CVE-2023-23397 Yara - to detect .msg files exploiting CVE-2023-23397 in Microsoft Outlook

    1 project | /r/blueteamsec | 16 Mar 2023
  • OneNote Yara rule

    1 project | /r/blueteamsec | 27 Jan 2023
  • New Exchange Zero Day rumours [29th September]

    1 project | /r/msp | 29 Sep 2022
  • Završio/la si TVZ? Još sutra traju prijave za networking događaj Alumnijada 2022 (četvrtak 29.9.2022.)

    1 project | /r/CroIT | 27 Sep 2022
  • Radi li iko u cybersecurity sektoru?

    1 project | /r/CroIT | 16 Aug 2022
  • A note from our sponsor - SaaSHub
    www.saashub.com | 18 May 2024
    SaaSHub helps you find the best software and product alternatives Learn more →

Index

What are some of the best open-source yara-rule projects in YARA? This list will help you:

Project Stars
1 signature-base 2,341
2 reversinglabs-yara-rules 701
3 yara4ida 57
4 audit-node-modules-with-yara 19
5 Cerebro 19

Sponsored
SaaSHub - Software Alternatives and Reviews
SaaSHub helps you find the best software and product alternatives
www.saashub.com