awesome-repositories.com
Blog
MCP
awesome-repositories.com

Discover the best open-source repositories with AI-powered search.

ExploreCurated searchesOpen-source alternativesSelf-hosted softwareBlogSitemap
ProjectMCP serverAboutHow we rankPress
LegalPrivacyTerms
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
Back to citizenlab/malware-signatures

Projects sharing features with Malware Signatures

30 open-source projects similar to citizenlab/malware-signatures, ranked by shared indexed features. Tags may describe platforms or build tools rather than the same primary purpose. Check each project’s use case, license, and deployment requirements before treating it as a replacement.

  • intezer/yara-rulesintezer avatar

    intezer/yara-rules

    131View on GitHub↗
    YARA
    View on GitHub↗131
  • advanced-threat-research/yara-rulesadvanced-threat-research avatar

    advanced-threat-research/Yara-Rules

    626View on GitHub↗

    Repository of YARA rules made by Trellix ATR Team

    YARA
    View on GitHub↗626
  • reversinglabs/reversinglabs-yara-rulesreversinglabs avatar

    reversinglabs/reversinglabs-yara-rules

    922View on GitHub↗

    ReversingLabs YARA Rules

    YARA
    View on GitHub↗922
  • x64dbg/yarasigsx64dbg avatar

    x64dbg/yarasigs

    87View on GitHub↗

    Various Yara signatures (possibly to be included in a release later).

    YARA
    View on GitHub↗87
  • kevthehermit/yararuleskevthehermit avatar

    kevthehermit/YaraRules

    52View on GitHub↗

    My Yara Rules Collection

    View on GitHub↗52
  • yara-rules/rulesYara-Rules avatar

    Yara-Rules/rules

    4,712View on GitHub↗

    This project is a community-curated repository of YARA rules used to detect malware, webshells, and other malicious patterns in files. It serves as a dataset of signatures for identifying known malware families, software packers, and threat intelligence indicators. The collection provides specialized detection capabilities for identifying exploit kits and anti-analysis evasion techniques, such as anti-debugging and anti-virtualization methods. It also includes signatures for cryptographic algorithm detection and the identification of unauthorized remote administration tools on servers. The r

    YARA
    View on GitHub↗4,712

AI search

Explore more awesome repositories

Describe what you need in plain English — the AI ranks thousands of curated open-source projects by relevance.

Find more with AI search
  • inquest/yara-rulesInQuest avatar

    InQuest/yara-rules

    390View on GitHub↗

    A collection of YARA rules we wish to share with the world, most probably referenced from http://blog.inquest.net.

    Python
    View on GitHub↗390
  • virustotal/yaraVirusTotal avatar

    VirusTotal/yara

    9,420View on GitHub↗

    YARA is a pattern matching engine and binary analysis tool used to identify and classify malware samples. It functions as a malware research framework that allows for the definition of file descriptions and detection rules to find indicators of compromise within binaries. The system enables the creation of custom detection rules using strings, wildcards, and regular expressions. These rules use boolean logic to match textual or binary patterns, allowing for the classification of files into specific malware families and the automation of threat intelligence. The engine utilizes Aho-Corasick s

    Cyara
    View on GitHub↗9,420
  • bartblaze/yara-rulesbartblaze avatar

    bartblaze/Yara-rules

    385View on GitHub↗

    Collection of private Yara rules.

    YARA
    View on GitHub↗385
  • h3x2b/yara-rulesh3x2b avatar

    h3x2b/yara-rules

    23View on GitHub↗

    Yara rules for detecting malware

    YARA
    View on GitHub↗23
  • delivr-to/detectionsdelivr-to avatar

    delivr-to/detections

    75View on GitHub↗

    A home for detection content developed by the delivr.to team

    YARA
    View on GitHub↗75
  • diablohorn/yara4pentestersDiabloHorn avatar

    DiabloHorn/yara4pentesters

    127View on GitHub↗

    rules to identify files containing juicy information like usernames, passwords etc

    View on GitHub↗127
  • didierstevens/didierstevenssuiteDidierStevens avatar

    DidierStevens/DidierStevensSuite

    2,498View on GitHub↗

    Please no pull requests for this repository. Thanks!

    Python
    View on GitHub↗2,498
  • ditekshen/detectionditekshen avatar

    ditekshen/detection

    254View on GitHub↗

    Detection in the form of Yara, Snort and ClamAV signatures.

    YARA
    View on GitHub↗254
  • anyrun/yaraanyrun avatar

    anyrun/YARA

    29View on GitHub↗

    Maintained by the ANY.RUN team, this repository provides YARA rules to help detect and classify various malware families and other malicious artifacts.

    YARA
    View on GitHub↗29
  • deadbits/yara-rulesdeadbits avatar

    deadbits/yara-rules

    44View on GitHub↗

    Collection of YARA signatures from individual research

    YARA
    View on GitHub↗44
  • fideliscyber/indicatorsF

    fideliscyber/indicators

    0View on GitHub↗
    View on GitHub↗0
  • cystack/stealer-fingerprintscystack avatar

    cystack/stealer-fingerprints

    2View on GitHub↗

    Public catalog of stealer log fingerprints. Banner strings, field signatures, sanitized samples, and YARA rules for 30+ malware families including RedLine, Vidar, Lumma, StealC, and Rhadamanthys. For incident response, detection engineering, and threat intelligence research.

    YARA
    View on GitHub↗2
  • alienvault-labs/alienvaultlabsAlienVault-Labs avatar

    AlienVault-Labs/AlienVaultLabs

    524View on GitHub↗

    Alienvault Labs Projects Random Stuff

    Python
    View on GitHub↗524
  • filescanio/fsyarafilescanio avatar

    filescanio/fsYara

    22View on GitHub↗

    A collection of curated YARA rules used as part of the Filescan.io service

    YARA
    View on GitHub↗22
  • fr0gger/yara-unprotectfr0gger avatar

    fr0gger/Yara-Unprotect

    26View on GitHub↗

    This repository regroups the Yara Rules for the Unprotect Project

    YARA
    View on GitHub↗26
  • godaddy/yara-rulesgodaddy avatar

    godaddy/yara-rules

    89View on GitHub↗

    YARA rules for use with ProcFilter

    View on GitHub↗89
  • fboldewin/yara-rulesfboldewin avatar

    fboldewin/YARA-rules

    70View on GitHub↗

    Some YARA rules i will add from time to time

    YARA
    View on GitHub↗70
  • hestat/lw-yaraHestat avatar

    Hestat/lw-yara

    108View on GitHub↗

    Yara Ruleset for scanning Linux servers for shells, spamming, phishing and other webserver baddies

    YARA
    View on GitHub↗108
  • hydradragonantivirus/hydradragonantivirusHydraDragonAntivirus avatar

    HydraDragonAntivirus/HydraDragonAntivirus

    206View on GitHub↗

    Dynamic and static analysis with Real Time Malware Analysis with Antivirus for Windows, including open-source XDR (3 EDR projects), ClamAV, YARA-X, machine learning AI, behavioral analysis, Unpacker, Deobfuscator, Decompiler, website signatures, Ghidra, Suricata, Sigma, Kernel, Hypervisior based protection and much more than you can imagine.

    YARA
    View on GitHub↗206
  • imp0rtp3/yara-rulesimp0rtp3 avatar

    imp0rtp3/yara-rules

    20View on GitHub↗

    Yara rules written by me, for free use.

    YARA
    View on GitHub↗20
  • eset/malware-ioceset avatar

    eset/malware-ioc

    1,955View on GitHub↗

    Indicators of Compromises (IOC) of our various investigations

    YARA
    View on GitHub↗1,955
  • codewatchorg/burp-yara-rulescodewatchorg avatar

    codewatchorg/Burp-Yara-Rules

    49View on GitHub↗

    Yara rules to be used with the Burp Yara-Scanner extension

    YARA
    View on GitHub↗49
  • jeff0falltrades/yara-signaturesjeFF0Falltrades avatar

    jeFF0Falltrades/YARA-Signatures

    30View on GitHub↗

    A collection of my public YARA signatures for various malware families

    YARA
    View on GitHub↗30
  • emersonelectricco/fsfEmersonElectricCo avatar

    EmersonElectricCo/fsf

    294View on GitHub↗

    File Scanning Framework

    Python
    View on GitHub↗294