How this analysis was created: This summary and feature list are AI-generated from collected project material and can contain mistakes. Stars, license and language are imported from GitHub. Inclusion does not mean that we have tested or audited this project. Check the source documentation for any feature you depend on. Learn more on our About page.
BinaryAlert: Serverless, Real-time & Retroactive Malware Detection.
Loki is an endpoint detection tool, forensic artifact analyzer, and threat intelligence scanner. It functions as a YARA-based indicator of compromise scanner designed to identify malicious persistence mechanisms, web shells, and unauthorized administration tools across local and remote systems. The project distinguishes itself by integrating multi-source threat intelligence, allowing for the loading of custom signature sets and encrypted indicators. It combines hash-based artifact detection with YARA rule execution to scan files, process memory, and registry hives for known malicious byte seq
A multi-platform .Net wrapper library for the native Yara library.
Modular file scanning/analysis framework
The main features of mitre/multiscanner are: Code Libraries And Bindings, Detection and Classification, Development And Analysis Tools.
Projects with overlapping indexed features include: airbnb/binaryalert — BinaryAlert: Serverless, Real-time & Retroactive Malware Detection. neo23x0/yargen — yarGen is a generator for YARA rules. neo23x0/loki — Loki is an endpoint detection tool, forensic artifact analyzer, and threat intelligence scanner. It functions as a… anpa1200/aidebug — AI-assisted malware reverse-engineering debugger with ATT&CK, YARA, IOC, JSON, and analyst report output. alienvault-otx/yabin — A Yara rule generator for finding related samples and hunting. airbus-cert/dnyara — A multi-platform .Net wrapper library for the native Yara library.