rule-engine

20 tools and resources

NEW

Embeddable Yara library for Java with support for loading rules and scanning data.

YaraDbg Logo

YaraDbg

0 (0)

A free web-based Yara debugger for security analysts to write hunting or detection rules with ease.

A tool for creating custom detection rules from YAML input

Repository for detection content with various types of rules and payloads.

A set of interrelated detection rules for improving detection and hunting visibility and context

YARA rules for ProcFilter to detect malware and threats

Plyara Logo

Plyara

0 (0)

Parse YARA rules into a dictionary representation.

A set of rules for detecting threats in various formats, including Snort, Yara, ClamAV, and HXIOC.

Tool for decompressing malware samples to run Yara rules against them.

yaramod Logo

yaramod

0 (0)

Yaramod is a library for parsing YARA rules into AST and building new YARA rulesets with C++ programming interface.

Bindings for the Yara library from VirusTotal with support for Yara v4.2 and various features like rule compilation and scanning.

Open-source rules for detecting and preventing email attacks like BEC, malware, and credential phishing.

A tool that generates Yara rules for strings and their XOR encoded versions, as well as base64-encoded variations with different padding possibilities.

A Go library for manipulating YARA rulesets with the ability to programatically change metadata, rule names, and more.

Serverless, real-time data analysis framework for incident detection and response.

Open source tool for generating YARA rules about installed software from a running OS.