spyre
IOC Scanner
A modular host-based IOC scanner built around YARA pattern matching engine
simple YARA-based IOC scanner
164 stars
12 watching
27 forks
Language: Go
last commit: 3 months ago
Linked from 2 awesome lists
gogolanghacktoberfestincident-responseioclinuxmacosmacosxscannersecuritywindowsyarayara-scanner
Related projects:
Repository | Description | Stars |
---|---|---|
| Converts detection rules and IOCs to be usable with a proprietary SIEM product | 15 |
| A repository of malware indicators and rules for threat hunting and analysis. | 1,698 |
| Tool to create and match patterns for identifying malware samples | 8,370 |
| A simple Bash script to scan Linux/Unix systems for Indicators of Compromise (IOCs) without installing additional software or agents. | 702 |
| Provides a set of standardized indicators to help detect and assess malware presence | 10 |
| A library providing Go bindings for YARA's pattern matching API. | 361 |
| Analyzes binary and text data for YARA and regex matches, visualizes results with colors, and attempts to decode matched regions | 109 |
| A Go library for manipulating YARA rulesets using the same grammar and lexer as the original libyara. | 82 |
| Performs OCR on images and scans them for matches to Yara rules | 40 |
| A Python wrapper around libyara that provides scanning capabilities with customizable options and distributed multi-core processing. | 18 |
| A presentation project showcasing how to quickly analyze executable files using YARA and PE features | 4 |
| Automated threat intelligence collection from articles and tweets, utilizing YARA patterns | 312 |
| A collection of compiled indicators-of-compromise from published reports, designed to aid in threat detection and analysis. | 547 |
| Provides Yara rules to identify malicious software in web applications | 44 |
| A utility that integrates Yara pattern scanning into Windows' right-click menu, allowing users to scan files and folders for malware patterns. | 35 |