- 12 Apr, 2022 4 commits
-
-
yararules authored
-
Jaume Martin authored
-
yararules authored
-
Added rule for executables created by pyinstaller on OSX
Jaume Martin authored
-
- 01 Apr, 2022 3 commits
-
-
KatsuragiCSL authored
-
KatsuragiCSL authored
-
KatsuragiCSL authored
-
- 18 Nov, 2021 3 commits
-
-
yararules authored
-
Tighten Glasses rule
Jaume Martin authored -
Marked GlassesCode rule private to prevent alerting. Modified Glasses rule to require both GlassesCode and GlassesStrings to limit alerting. Added a reference URL and a reference file hash value to the rules. Updated the last modified dates. Tested rules against the reference hash file with both GlassesStrings and Glasses producing detections. Fixes #422
RandomRhythm authored
-
- 08 Oct, 2021 3 commits
-
-
yararules authored
-
Jaume Martin authored
-
now it only detects documents
Bondey authored
-
- 25 Aug, 2021 2 commits
-
-
yararules authored
-
Jaume Martin authored
-
- 05 Aug, 2021 5 commits
-
-
yararules authored
-
Add BLS12-381 subgroup order
Jaume Martin authored -
Added msql database usage checker
Jaume Martin authored -
Create MALW_MacGyver.yar
Jaume Martin authored -
Mehmet Ali KERİMOĞLU authored
-
- 30 Jul, 2021 1 commit
-
-
Sylvain Pelissier authored
-
- 11 May, 2021 1 commit
-
-
rule to detect smard-card related hacktool/malwares
Steven K authored
-
- 21 Apr, 2021 2 commits
-
-
yararules authored
-
Added Rule for tweetable-polyglot-png
Jaume Martin authored
-
- 23 Mar, 2021 3 commits
-
-
Manfred Kaiser authored
-
Manfred Kaiser authored
-
Manfred Kaiser authored
-
- 09 Mar, 2021 2 commits
-
-
yararules authored
-
Include license text
Jaume Martin authored
-
- 27 Feb, 2021 3 commits
- 26 Feb, 2021 2 commits
-
-
yararules authored
-
Jaume Martin authored
-
- 05 Feb, 2021 2 commits
-
-
yararules authored
-
add TOOLKIT_Redteam_Tools_by_Name.yar, TOOLKIT_Redteam_Tools_by_GUID.…
Jaume Martin authored
-
- 23 Jan, 2021 1 commit
-
-
add TOOLKIT_Redteam_Tools_by_Name.yar, TOOLKIT_Redteam_Tools_by_GUID.yar, TOOLKIT_Solarwinds_credential_stealer.yar rules to detect 339 hacktools, mostly c#
Arnim Rupp authored
-
- 28 Dec, 2020 3 commits
-
-
yararules authored
-
Create MALW_PurpleWave.yar
Jaume Martin authored -
Create Email_PHP_Mailer.yar
Jaume Martin authored
-