How this analysis was created: This summary and feature list are AI-generated from collected project material and can contain mistakes. Stars, license and language are imported from GitHub. Inclusion does not mean that we have tested or audited this project. Check the source documentation for any feature you depend on. Learn more on our About page.
Loki is an endpoint detection tool, forensic artifact analyzer, and threat intelligence scanner. It functions as a YARA-based indicator of compromise scanner designed to identify malicious persistence mechanisms, web shells, and unauthorized administration tools across local and remote systems. The project distinguishes itself by integrating multi-source threat intelligence, allowing for the loading of custom signature sets and encrypted indicators. It combines hash-based artifact detection with YARA rule execution to scan files, process memory, and registry hives for known malicious byte seq
BinaryAlert: Serverless, Real-time & Retroactive Malware Detection.
A multi-platform .Net wrapper library for the native Yara library.
Serverless, real-time, ClamAV+Yara scanning for your S3 Buckets
simple YARA-based IOC scanner
The main features of spyre-project/spyre are: Development And Analysis Tools, Scanner Tools.
Projects with overlapping indexed features include: neo23x0/loki — Loki is an endpoint detection tool, forensic artifact analyzer, and threat intelligence scanner. It functions as a… airbnb/binaryalert — BinaryAlert: Serverless, Real-time & Retroactive Malware Detection. airbus-cert/dnyara — A multi-platform .Net wrapper library for the native Yara library. alienvault-otx/yabin — A Yara rule generator for finding related samples and hunting. anpa1200/aidebug — AI-assisted malware reverse-engineering debugger with ATT&CK, YARA, IOC, JSON, and analyst report output. abhinavbom/clara — Serverless, real-time, ClamAV+Yara scanning for your S3 Buckets.