Showing 36 of 38 projects
A curated list of awesome malware analysis tools, resources, and related information for security professionals.
A curated list of awesome malware analysis tools, resources, and related information for security professionals.
A pattern-matching tool for malware researchers to identify and classify malware samples using custom rules.
A curated list of awesome YARA rules, tools, and resources for malware researchers and security professionals.
A simple IOC and YARA scanner for detecting malware and security threats via file names, hashes, YARA rules, and C2 connections.
An advanced malware sandbox for automated configuration and payload extraction with dynamic unpacking and anti-evasion capabilities.
GUI and console sources for Detect It Easy (DiE), a program for determining file types and packers.
Identifies compilers, packers, obfuscators, and other characteristics in Android APK and DEX files.
A Windows security tool for real-time adversary tradecraft detection, memory scanning, and forensics via behavior-driven rules.
Indicators of Compromises (IOC) of our various investigations
A Python tool that generates YARA rules for malware detection by filtering out strings and opcodes that appear in goodware.
BinaryAlert: Serverless, Real-time & Retroactive Malware Detection.
A portable Python script that automates malware analysis by collecting runtime indicators using Sysinternals Procmon.
A static analyzer for PE executables that identifies malicious indicators and aids in malware assessment.
Scans files and process memory for Cobalt Strike beacons and extracts their configuration.
A scalable, modular object scanner and intrusion detection system that extracts, flags, and enriches files with metadata.
A modular file scanning and analysis framework that automates running a suite of tools and aggregates their output.
Go bindings for the YARA pattern matching library, providing a Go-native interface to YARA's C API.
A collaborative malware analysis framework for storing samples, automating analysis, and sharing insights via IDA Pro integration.
A modular, recursive file scanning framework that extends Yara signatures to extract and analyze file objects for malware analysis and intelligence.
A lightweight incident response tool for rapid suspicious file discovery during threat hunting and forensic triage.
A Windows malware unpacker using Intel PIN for dynamic binary instrumentation and Scylla for import reconstruction.
A lightweight rules-based malware scanner for USB drives, local files, and folders with a privacy-friendly approach.
Python library for creating, editing, and managing OpenIOC objects for threat intelligence indicators.
A simple, self-contained modular host-based IOC scanner built around the YARA pattern matching engine.
A command-line utility for storing, tagging, and searching malware samples to help analysts manage their workflow.
A plugin-based malware crawler for collecting and pre-analyzing malware samples, useful for antivirus testing and malware analysis.
A low-interaction client honeypot that detects malicious websites using signature, anomaly, and pattern matching techniques.
An ICAP server that scans web content and URLs using YARA rules for security filtering.
A command-line tool that enables SQL queries over file metadata with security-focused processors like YARA and digest matching.
A Bro (Zeek) file analyzer plugin that integrates YARA rule scanning for malware detection in network traffic.
A multithreaded YARA scanner that applies many rules to many files for incident response and malware analysis.
A hybrid AI honeypot for detecting and interacting with mass web application exploitation attempts.
A portable PEiD implementation using YARA rules for malware analysis without requiring YARA installation.
Go client library for interacting with the MalShare malware repository API.
A Python implementation of PEiD for detecting packers, compilers, and anti-debugging techniques in Windows PE files using YARA rules.
Open-Awesome is built by the community, for the community. Submit a project, suggest an awesome list, or help improve the catalog on GitHub.