30 open-source projects similar to mitre/multiscanner, ranked by how many features they have in common. Compare stars, activity and what each one does to find the best Multiscanner alternative.
BinaryAlert: Serverless, Real-time & Retroactive Malware Detection.
Loki is an endpoint detection tool, forensic artifact analyzer, and threat intelligence scanner. It functions as a YARA-based indicator of compromise scanner designed to identify malicious persistence mechanisms, web shells, and unauthorized administration tools across local and remote systems. The project distinguishes itself by integrating multi-source threat intelligence, allowing for the loading of custom signature sets and encrypted indicators. It combines hash-based artifact detection with YARA rule execution to scan files, process memory, and registry hives for known malicious byte seq
AI-assisted malware reverse-engineering debugger with ATT&CK, YARA, IOC, JSON, and analyst report output
Clojure YARA-style pattern matching - malware signatures, hex/ascii/regex patterns
A Yara rule generator for finding related samples and hunting
Automated static analysis tools for binary programs
Performs OCR on image files and scans them for matches to YARA rules
Repository that contains a set of purposefully erroneous Yara rules.
Yara integrated software to handle archive file data.
Python 3 tool to parse Yara rules (extension of yarabuilder)
An easy-to-use and lightweight API wrapper for Censys APIs.
Factual-rules-generator is an open source project which aims to generate YARA rules about installed software from a machine.
Validates yara rules and tries to repair the broken ones.
Arya is a unique tool that produces pseudo-malicious files meant to trigger YARA rules. You can think of it like a reverse YARA.
Yara rule generator using VirusTotal code similarity feature code-similar-to:
CrowdStrike Feed Management System. CrowdFMS is a framework for automating collection and processing of samples from VirusTotal, by leveraging the Private API system. This framework automatically downloads recent samples, which triggered an alert on the users YARA notification feed.
YARA rule metadata specification and validation utility / Spécification et validation pour les règles YARA
Create base64 or XOR encoded variations of a string (or list of strings for base64)
PowerShell Module to interact with VirusTotal
A multi-platform .Net wrapper library for the native Yara library.