Skip to content

Russian APT Detector

Latest
Compare
Choose a tag to compare
@ITAYC0HEN ITAYC0HEN released this 19 Sep 09:08
· 17 commits to master since this release

Russian APT Detector is a set of Yara rules produced by Intezer’s platform. The rules contain byte-sequences of popular mutual code between one or more samples. We then wrapped it up in a binary to ease the use of the tool. The full ruleset can be found in this repository and can be used freely using your favorite Yara scanner. Don’t hesitate to integrate this ruleset into your platform and toolset.