awesome-repositories.com
Blog
MCP
awesome-repositories.com

Discover the best open-source repositories with AI-powered search.

ExploreCurated searchesOpen-source alternativesSelf-hosted softwareBlogSitemap
ProjectMCP serverAboutHow we rankPress
LegalPrivacyTerms
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
eset avatar

eset/malware-ioc

0
View on GitHub↗
1,955 stars·278 forks·YARA·BSD-2-Clause·17 viewswww.welivesecurity.com↗

Malware Ioc

Indicators of Compromises (IOC) of our various investigations

Features

  • Yara Rule Collections - Rules derived from ESET threat intelligence.
  • Fingerprinting and Signatures - Provides indicators of compromise derived from security investigations.
  • Malware Analysis - Indicators of compromise from security research.
  • Threat Intelligence - Indicators of compromise related to malware campaigns.
  • Threat Intelligence Feeds - Indicators of compromise gathered from security investigations.

Star history

Star history chart for eset/malware-iocStar history chart for eset/malware-ioc

How this analysis was created: This summary and feature list were written by an AI model that read the project's README and public documentation pages. Each feature links to the documentation it came from; stars, license and language come straight from the GitHub API. The model does not read the source code, and the analysis is refreshed when the project is re-analysed. Learn more on our About page.

AI search

Explore more awesome repositories

Describe what you need in plain English — the AI ranks thousands of curated open-source projects by relevance.

Start searching with AI

Open-source alternatives to Malware Ioc

Similar open-source projects, ranked by how many features they share with Malware Ioc.
  • yara-rules/rulesYara-Rules avatar

    Yara-Rules/rules

    4,712View on GitHub↗

    This project is a community-curated repository of YARA rules used to detect malware, webshells, and other malicious patterns in files. It serves as a dataset of signatures for identifying known malware families, software packers, and threat intelligence indicators. The collection provides specialized detection capabilities for identifying exploit kits and anti-analysis evasion techniques, such as anti-debugging and anti-virtualization methods. It also includes signatures for cryptographic algorithm detection and the identification of unauthorized remote administration tools on servers. The r

    YARA
    View on GitHub↗4,712
  • neo23x0/lokiNeo23x0 avatar

    Neo23x0/Loki

    3,763View on GitHub↗

    Loki is an endpoint detection tool, forensic artifact analyzer, and threat intelligence scanner. It functions as a YARA-based indicator of compromise scanner designed to identify malicious persistence mechanisms, web shells, and unauthorized administration tools across local and remote systems. The project distinguishes itself by integrating multi-source threat intelligence, allowing for the loading of custom signature sets and encrypted indicators. It combines hash-based artifact detection with YARA rule execution to scan files, process memory, and registry hives for known malicious byte seq

    Python
    View on GitHub↗3,763
  • alexandreborges/malwoverviewalexandreborges avatar

    alexandreborges/malwoverview

    3,882View on GitHub↗

    This project is a Python command-line security tool and malware analysis framework designed for threat intelligence aggregation and incident triage. It functions as an aggregator that orchestrates queries across multiple security services and sandboxes to analyze hashes, IP addresses, and domains. The tool distinguishes itself by incorporating an intelligence layer that uses language models to provide automated risk assessments and framework mappings. It also includes specialized capabilities for extracting indicators of compromise from unstructured text, documents, and web pages, as well as

    Pythonalienvaultcvecve-search
    View on GitHub↗3,882
  • misp/mispMISP avatar

    MISP/MISP

    6,360View on GitHub↗

    MISP is an open-source threat intelligence sharing platform designed for collecting, storing, and distributing structured threat indicators and intelligence. At its core, it provides a distributed synchronization protocol for transferring events between instances, an attribute-based correlation engine that links matching indicators across events, and a REST API with an OpenAPI specification for programmatic access to threat data. The platform uses formal data formats for JSON, taxonomy, galaxy, and object templates to enable compatibility across tools and communities. The platform distinguish

    PHP
    View on GitHub↗6,360
See all 30 alternatives to Malware Ioc→

Frequently asked questions

What does eset/malware-ioc do?

Indicators of Compromises (IOC) of our various investigations

What are the main features of eset/malware-ioc?

The main features of eset/malware-ioc are: Yara Rule Collections, Fingerprinting and Signatures, Malware Analysis, Threat Intelligence, Threat Intelligence Feeds.

What are some open-source alternatives to eset/malware-ioc?

Open-source alternatives to eset/malware-ioc include: yara-rules/rules — This project is a community-curated repository of YARA rules used to detect malware, webshells, and other malicious… neo23x0/loki — Loki is an endpoint detection tool, forensic artifact analyzer, and threat intelligence scanner. It functions as a… misp/misp — MISP is an open-source threat intelligence sharing platform designed for collecting, storing, and distributing… alexandreborges/malwoverview — This project is a Python command-line security tool and malware analysis framework designed for threat intelligence… doctorwebltd/malware-iocs. fireeye/iocs — FireEye Publicly Shared Indicators of Compromise (IOCs).