factual-rules-generator

Software identifier

Generates YARA rules to identify installed software on a machine based on collected digital forensic evidence

Factual-rules-generator is an open source project which aims to generate YARA rules about installed software from a machine.

GitHub

76 stars
10 watching
6 forks
Language: Python
last commit: over 4 years ago
Linked from 1 awesome list

computer-forensicsdfiryarayara-rules

Backlinks from these awesome lists:

Related projects:

RepositoryDescriptionStars
circl/yara-validatorValidates Yara rules and tries to repair broken ones39
sophos/yaraml_rulesAutomates the creation of Yara rules from machine learning models trained on malware and benign samples.214
yara-silly-silly/yarasilly2Automatically generates YARA rules from sample files for malware analysis28
neo23x0/yargenGenerates YARA rules from malware strings while excluding goodware strings and optionally refines the rules for AI use.1,569
jimmy-sonny/yayagenAn automatic procedure to generate YARA rules from a set of malware reports62
nccgroup/yaml2yaraAutomated generation of YARA rules from YAML input data22
cyberdefenses/cdi_yaraA collection of YARA rules based on intelligence profiles and file work.19
imp0rtp3/yara-rulesA repository of custom Yara rules for malware analysis and threat intelligence18
xen0ph0n/yarageneratorAutomates the creation of Yara rules to detect malware and other malicious objects of interest by analyzing sample files from various sources.332
securitymagic/yaraA collection of YARA rules for detecting malware and suspicious activity in various environments.11
futurecomputing4ai/autoyaraAutomated rule generation tool for malware analysis using biclustering algorithm61
tenable/yara-rulesA curated collection of YARA rules for identifying and flagging malicious code and behavior.60
intezer/yara-rulesA repository of pre-defined YARA rules for detecting malware and other malicious software126
jipegit/yara-rules-publicA collection of Yara rules for detecting malicious code and behavior11
codewatchorg/burp-yara-rulesProvides Yara rules to identify malicious software in web applications44