arya

Malware simulator

A tool that generates custom-made files to trigger YARA rules and mimic malware behavior.

Arya is a unique tool that produces pseudo-malicious files meant to trigger YARA rules. You can think of it like a reverse YARA.

GitHub

242 stars
12 watching
22 forks
Language: Python
last commit: over 3 years ago
Linked from 1 awesome list


Backlinks from these awesome lists:

Related projects:

RepositoryDescriptionStars
yara-silly-silly/yarasilly2Automatically generates YARA rules from sample files for malware analysis28
virustotal/yaraTool to create and match patterns for identifying malware samples8,370
justicerage/yaraA tool for identifying and classifying malware samples based on textual or binary patterns7
virustotal/yara-pythonA Python interface to use YARA's features from Python programs665
airbus-cert/dnyaraA .Net wrapper library for the native Yara library to quickly identify and classify malware samples.38
yara-rules/yara-endpointA tool used to scan files and assets for malware using Yara signatures, offering incident response capabilities.104
abhinavbom/claraScans S3 buckets for malware using ClamAV and Yara signatures in real-time32
xen0ph0n/yarageneratorAutomates the creation of Yara rules to detect malware and other malicious objects of interest by analyzing sample files from various sources.332
tenable/yara-rulesA curated collection of YARA rules for identifying and flagging malicious code and behavior.60
jheise/yarascannerA web service for scanning files with Yara rules to detect malware and other threats27
markcyber/badusbA collection of educational scripts and payloads for simulating vulnerabilities and malware attacks on Windows systems using custom hardware.60
f0wl/yara_rulesA collection of YARA rules for malware analysis and threat intelligence10
intezer/yara-rulesA repository of pre-defined YARA rules for detecting malware and other malicious software126
securitymagic/yaraA collection of YARA rules for detecting malware and suspicious activity in various environments.11
rjzak/decompressingyaraA tool for decompressing malware samples and running Yara rules against them.7