BinaryAlert: Serverless, Real-time & Retroactive Malware Detection.
Loki is an endpoint detection tool, forensic artifact analyzer, and threat intelligence scanner. It functions as a YARA-based indicator of compromise scanner designed to identify malicious persistence mechanisms, web shells, and unauthorized administration tools across local and remote systems. The project distinguishes itself by integrating multi-source threat intelligence, allowing for the loading of custom signature sets and encrypted indicators. It combines hash-based artifact detection with YARA rule execution to scan files, process memory, and registry hives for known malicious byte seq
A multi-platform .Net wrapper library for the native Yara library.
Modular file scanning/analysis framework
Las características principales de mitre/multiscanner son: Code Libraries And Bindings, Detection and Classification, Development And Analysis Tools.
Las alternativas de código abierto para mitre/multiscanner incluyen: airbnb/binaryalert — BinaryAlert: Serverless, Real-time & Retroactive Malware Detection. neo23x0/yargen — yarGen is a generator for YARA rules. neo23x0/loki — Loki is an endpoint detection tool, forensic artifact analyzer, and threat intelligence scanner. It functions as a… anpa1200/aidebug — AI-assisted malware reverse-engineering debugger with ATT&CK, YARA, IOC, JSON, and analyst report output. alienvault-otx/yabin — A Yara rule generator for finding related samples and hunting. airbus-cert/dnyara — A multi-platform .Net wrapper library for the native Yara library.