Skip to content


See what the GitHub community is most excited about today.

  1. Repository of yara rules

    YARA 1,532 456 Built by @mmorenog @seifreed @jovimon @jholgui @Xumeiquer
  2. Program for determining types of files.

    YARA 755 116 Built by @horsicq @hypn0chka @adoxa @d3adm4u5 @itsreallynick
  3. Signature base for my scanner tools

    YARA 663 196 Built by @Neo23x0 @JohnLaTwC @jonaslejon @yt0ng @cnotin
  4. Android Application Identifier for Packers, Protectors, Obfuscators and Oddities - PEiD for Android

    YARA 523 120 Built by @CalebFenton @enovella @strazzere @circleous @Jasi2169
  5. Indicators of Compromises (IOC) of our various investigations

    YARA 518 104 Built by @marc-etienne @obilodeau @mFaou @nyx0 @pkalnai
  6. A static analyzer for PE executables.

    YARA 506 104 Built by @JusticeRage @rc0r @gy741
  7. Please no pull requests for this repository. Thanks!

    YARA 455 139 Built by @DidierStevens
  8. PEframe is a open source tool to perform static analysis on Portable Executable malware and malicious MS Office documents.

    YARA 350 106 Built by @guelfoweb @2xyo @drego85 @rubinsaifi
  9. Scripts for the Ghidra software reverse engineering suite.

    YARA 279 12 Built by @nezza
  10. Hamburglar -- collect useful information from urls, directories, and files

    YARA 157 14 Built by @needmorecowbell @adi928 @invalid-email-address @tijko @jaeger-2601
  11. YARA Rules I come across on the internet

    YARA 118 31 Built by @mikesxrs @mybuddymichael
  12. WALKOFF-enabled applications. #nsacyber

    YARA 75 27 Built by @JustinTervala @iadgovuser11 @coreyjrobins @dedgar1 @egk865
  13. Mass static malware analysis tool

    YARA 60 23 Built by @nheijmans @tcwaddell
  14. A Web Malware Scanner

    YARA 48 10 Built by @sfaci
  15. Yara Ruleset for scanning Linux servers for shells, spamming, phishing and other webserver baddies

    YARA 32 12 Built by @Hestat
  16. EarthWorm/Termite 停止更新

    YARA 31 10 Built by @rootkiter
  17. Yara Dockerfile

    YARA 24 8 Built by @blacktop
  18. Investigation Planner for fast running analysis with predictable execution time. For example, static analysis.

    YARA 23 17 Built by @webstergd @boddumanohar @ms-xy @cynexit @zhanif3
  19. Malice Yara Plugin

    YARA 18 4 Built by @blacktop @wesinator
  20. IoC's, PCRE's, YARA's etc

    YARA 14 1 Built by @karttoon
  21. Repository of YARA rules made by McAfee ATR Team

    YARA 11 2 Built by @seifreed
  22. Repository of yara rules

    YARA 11 456 Built by @mmorenog @seifreed @jholgui @jovimon @yararules
  23. Yaras Random

    YARA 10 4 Built by @naxonez @bheras @utkonos
  24. Analysis of file (doc, pdf, exe, ...) in deep (emmbedded file(s)) with clamscan and yara rules

    YARA 10 3 Built by @lprat
  25. A collection of hunting and blue team scripts. Mostly others, some my own.

    YARA 7 2 Built by @johnfranolich
Other: YARA
Other Languages
1C Enterprise ABAP ABNF ActionScript Ada Adobe Font Metrics Agda AGS Script Alloy Alpine Abuild AMPL AngelScript Ant Build System ANTLR ApacheConf Apex API Blueprint APL Apollo Guidance Computer AppleScript Arc AsciiDoc ASN.1 ASP AspectJ Assembly Asymptote ATS Augeas AutoHotkey AutoIt Awk Ballerina Batchfile Befunge Bison BitBake Blade BlitzBasic BlitzMax Bluespec Boo Brainfuck Brightscript Bro C C# C++ C-ObjDump C2hs Haskell Cap'n Proto CartoCSS Ceylon Chapel Charity ChucK Cirru Clarion Clean Click CLIPS Clojure Closure Templates Cloud Firestore Security Rules CMake COBOL CoffeeScript ColdFusion ColdFusion CFC COLLADA Common Lisp Common Workflow Language Component Pascal CoNLL-U Cool Coq Cpp-ObjDump Creole Crystal CSON Csound Csound Document Csound Score CSS CSV Cuda CWeb Cycript Cython D D-ObjDump Darcs Patch Dart DataWeave desktop Diff DIGITAL Command Language DM DNS Zone Dockerfile Dogescript DTrace Dylan E Eagle Easybuild EBNF eC Ecere Projects ECL ECLiPSe Edje Data Collection edn Eiffel EJS Elixir Elm Emacs Lisp EmberScript EML EQ Erlang F# F* Factor Fancy Fantom FIGlet Font Filebench WML Filterscript fish FLUX Formatted Forth Fortran FreeMarker Frege G-code Game Maker Language GAMS GAP GCC Machine Description GDB GDScript Genie Genshi Gentoo Ebuild Gentoo Eclass Gerber Image Gettext Catalog Gherkin GLSL Glyph Glyph Bitmap Distribution Format GN Gnuplot Go Golo Gosu Grace Gradle Grammatical Framework Graph Modeling Language GraphQL Graphviz (DOT) Groovy Groovy Server Pages Hack Haml Handlebars HAProxy Harbour Haskell Haxe HCL HiveQL HLSL HTML HTML+Django HTML+ECR HTML+EEX HTML+ERB HTML+PHP HTML+Razor HTTP HXML Hy HyPhy IDL Idris IGOR Pro Inform 7 INI Inno Setup Io Ioke IRC log Isabelle Isabelle ROOT J Jasmin Java Java Properties Java Server Pages JavaScript JFlex Jison Jison Lex Jolie JSON JSON with Comments JSON5 JSONiq JSONLD Jsonnet JSX Julia Jupyter Notebook KiCad Layout KiCad Legacy Layout KiCad Schematic Kit Kotlin KRL LabVIEW Lasso Latte Lean Less Lex LFE LilyPond Limbo Linker Script Linux Kernel Module Liquid Literate Agda Literate CoffeeScript Literate Haskell LiveScript LLVM Logos Logtalk LOLCODE LookML LoomScript LSL Lua M M4 M4Sugar Makefile Mako Markdown Marko Mask Mathematica MATLAB Maven POM Max MAXScript mcfunction MediaWiki Mercury Meson Metal MiniD Mirah Modelica Modula-2 Modula-3 Module Management System Monkey Moocode MoonScript MQL4 MQL5 MTML MUF mupad Myghty NCL Nearley Nemerle nesC NetLinx NetLinx+ERB NetLogo NewLisp Nextflow Nginx Nim Ninja Nit Nix NL NSIS Nu NumPy ObjDump Objective-C Objective-C++ Objective-J OCaml Omgrofl ooc Opa Opal OpenCL OpenEdge ABL OpenRC runscript OpenSCAD OpenType Feature File Org Ox Oxygene Oz P4 Pan Papyrus Parrot Parrot Assembly Parrot Internal Representation Pascal Pawn Pep8 Perl Perl 6 PHP Pic Pickle PicoLisp PigLatin Pike PLpgSQL PLSQL Pod Pod 6 PogoScript Pony PostCSS PostScript POV-Ray SDL PowerBuilder PowerShell Processing Prolog Propeller Spin Protocol Buffer Public Key Pug Puppet Pure Data PureBasic PureScript Python Python console Python traceback q QMake QML Quake R Racket Ragel RAML Rascal Raw token data RDoc REALbasic Reason Rebol Red Redcode Regular Expression Ren'Py RenderScript reStructuredText REXX RHTML Rich Text Format Ring RMarkdown RobotFramework Roff Rouge RPC RPM Spec Ruby RUNOFF Rust Sage SaltStack SAS Sass Scala Scaml Scheme Scilab SCSS sed Self ShaderLab Shell ShellSession Shen Slash Slice Slim Smali Smalltalk Smarty SMT Solidity SourcePawn SPARQL Spline Font Database SQF SQL SQLPL Squirrel SRecode Template Stan Standard ML Stata STON Stylus SubRip Text SugarSS SuperCollider SVG Swift SystemVerilog Tcl Tcsh Tea Terra TeX Text Textile Thrift TI Program TLA TOML Turing Turtle Twig TXL Type Language TypeScript Unified Parallel C Unity3D Asset Unix Assembly Uno UnrealScript UrWeb Vala VCL Verilog VHDL Vim script Visual Basic Volt Vue Wavefront Material Wavefront Object wdl Web Ontology Language WebAssembly WebIDL Windows Registry Entries wisp World of Warcraft Addon Data X BitMap X Font Directory Index X PixMap X10 xBase XC XCompose XML Xojo XPages XProc XQuery XS XSLT Xtend Yacc YAML YANG YARA YASnippet Zephir Zig Zimpl
ProTip! Looking for recently updated YARA repositories? Try this search
You can’t perform that action at this time.
You signed in with another tab or window. Reload to refresh your session. You signed out in another tab or window. Reload to refresh your session.