How this analysis was created: This summary and feature list were written by an AI model that read the project's README and public documentation pages. Each feature links to the documentation it came from; stars, license and language come straight from the GitHub API. The model does not read the source code, and the analysis is refreshed when the project is re-analysed. Learn more on our About page.
Loki is an endpoint detection tool, forensic artifact analyzer, and threat intelligence scanner. It functions as a YARA-based indicator of compromise scanner designed to identify malicious persistence mechanisms, web shells, and unauthorized administration tools across local and remote systems. The project distinguishes itself by integrating multi-source threat intelligence, allowing for the loading of custom signature sets and encrypted indicators. It combines hash-based artifact detection with YARA rule execution to scan files, process memory, and registry hives for known malicious byte seq
BinaryAlert: Serverless, Real-time & Retroactive Malware Detection.
A multi-platform .Net wrapper library for the native Yara library.
Serverless, real-time, ClamAV+Yara scanning for your S3 Buckets
simple YARA-based IOC scanner
The main features of spyre-project/spyre are: Development And Analysis Tools, Scanner Tools.
Open-source alternatives to spyre-project/spyre include: neo23x0/loki — Loki is an endpoint detection tool, forensic artifact analyzer, and threat intelligence scanner. It functions as a… airbnb/binaryalert — BinaryAlert: Serverless, Real-time & Retroactive Malware Detection. airbus-cert/dnyara — A multi-platform .Net wrapper library for the native Yara library. alienvault-otx/yabin — A Yara rule generator for finding related samples and hunting. anpa1200/aidebug — AI-assisted malware reverse-engineering debugger with ATT&CK, YARA, IOC, JSON, and analyst report output. abhinavbom/clara — Serverless, real-time, ClamAV+Yara scanning for your S3 Buckets.