- Home
- Cloud Security
- Container Security
- Deepfence YaraHunter
Deepfence YaraHunter
Scans containers & filesystems for malware using YARA rules

Deepfence YaraHunter
Scans containers & filesystems for malware using YARA rules
Go Beyond the Directory. Track the Entire Market.
Monitor competitor funding, hiring signals, product launches, and market movements across the whole industry.
Deepfence YaraHunter Description
Deepfence YaraHunter is a malware scanning tool that identifies indicators of compromise in container images, running Docker containers, and filesystems. The tool uses YARA rulesets to match known malware signatures and detect potential compromises. YaraHunter can scan both running and at-rest containers, as well as local filesystems. It is distributed as a Docker container for portability and ease of deployment. The tool outputs results in JSON format for integration with automated workflows. The scanner can be deployed at multiple stages of the development and operations lifecycle. During CI/CD build operations, it can scan build artifacts for malware indicators. At rest, it can verify local container images before deployment. At runtime, it can scan active Docker containers when unusual activity is detected. The tool can also scan local filesystems at any time to check for indicators of compromise. YaraHunter uses the Deepfence YARA ruleset to identify malware signatures. Rules can be cached locally for subsequent scans by mounting a separate path and passing the rules-path argument. The tool requires a license key from Deepfence, which can be generated using a work or official email address. The scanner connects to the Docker socket to access container images and running containers. Scan results are stored in a specified output directory and can be parsed using standard JSON tools to extract specific indicators of compromise.
Deepfence YaraHunter FAQ
Common questions about Deepfence YaraHunter including features, pricing, alternatives, and user reviews.
Deepfence YaraHunter is Scans containers & filesystems for malware using YARA rules developed by Deepfence. It is a Cloud Security solution designed to help security teams with Container Security, Malware Detection, YARA Rules.
FEATURED
Fix-first AppSec powered by agentic remediation, covering SCA, SAST & secrets.
Cybercrime intelligence tools for searching compromised credentials from infostealers
Password manager with end-to-end encryption and identity protection features
Fractional CISO services for B2B companies to build security programs
POPULAR
Real-time OSINT monitoring for leaked credentials, data, and infrastructure
A threat intelligence aggregation service that consolidates and summarizes security updates from multiple sources to provide comprehensive cybersecurity situational awareness.
AI security assurance platform for red-teaming, guardrails & compliance
TRENDING CATEGORIES
Stay Updated with Mandos Brief
Get strategic cybersecurity insights in your inbox