100DaysofYARA / 2023

Rules Shared by the Community from 100 Days of YARA 2023
77 stars 26 forks source link

Add days 49 to 99 #71

Closed shellcromancer closed 1 year ago

shellcromancer commented 1 year ago

List of changes since last PR:

$ git log --author 'shellcromancer' --since="2023-02-18T00:00:00-07:00" --pretty=format:"%ad%x09%s" --date=short --reverse
2023-02-18  add macos_bundle_colorpicker
2023-02-19  add mal_iwebservices
2023-02-20  add file_icns
2023-02-21  add macos_cloudmensis
2023-02-24  add susp_encoded_ip
2023-02-25  add mal_final_cut_pro
2023-02-26  add i2pd
2023-02-27  add mal_ddosia.yar
2023-02-28  add mal_macos_systemd
2023-03-02  add macho_no_pagezero
2023-03-03  add mal_macos_xslcmd
2023-03-04  add mal_macos_pureland
2023-03-05  add mal_macos_coinminer
2023-03-06  add susp_macos_elitelogger
2023-03-07  add info_nop_sled.yar
2023-03-08  fix: loosen pureland condition
2023-03-09  add mal_macos_loselose
2023-03-10  add mal_macos_netwire
2023-03-11  add mal_macos_weaponx
2023-03-12  add susp_macos_sniperspy.yar
2023-03-13  add info_macos_xattrs
2023-03-14  exploit-cve-2023-23397
2023-03-15  add susp_macos_shellcode
2023-03-16  add program_thing.yar
2023-03-17  add susp_macho_loader
2023-03-18  add crossrat
2023-03-19  add mal_macos_rshell.yar
2023-03-20  add mal_macos_ventir
2023-03-21  add mal_macos_ventir_keylog
2023-03-22  add mal_macos_ventir_watchdog
2023-03-23  add mal_macos_silver_sparrow.yar
2023-03-24  add mal_macos_silver_sparrow
2023-03-25  add mal_macos_fkcodec.yar
2023-03-26  add mal_macos_macstealer
2023-03-27  add lang_python_bytecode
2023-03-28  add info_python_nuitka
2023-03-29  add file_ipsw
2023-03-30  add mal_macos_smoothoperator
2023-03-31  add info_macho_python
2023-04-01  add info_padded_dmg.yar
2023-04-02  add file_sdef.yar
2023-04-03  add mal_macos_smoothoperator_updateagent
2023-04-04  fix: mal_macos_smoothoperator
2023-04-05  add exploit-cve-2022-46689
2023-04-06  add info_macos_scpt_applet
2023-04-07  add mal_macos_dacls
2023-04-08  add info_macos_file_metadata
2023-04-09  add macos_bundle_findersync_appex
wxsBSD commented 1 year ago

TLDR!