Androguard module for Yara Logo

Androguard module for Yara

0
Free
Visit Website

This module for Yara is part of the Koodous project https://koodous.com and it integrates static APK analysis with Yara. You can use it to find APKs by package name, permissions or API level, etc. Find the documentation for this module in the Koodous documentation's site: http://docs.koodous.com/yara/androguard/ Preparing compilation: If you want to use this module, first you need to re-compile Yara with the androguard module. To do so, you need to modify some files. Follow the basic steps in the official docs: http://yara.readthedocs.org/en/latest/writingmodules.html#building-our-hello-world Include the file androguard.c in folder libyara/modules. Modify "libyara/modules/module_list" and add "MODULE(androguard)" in the cuckoo block. The file should look like the following: MODULE(pe) MODULE(elf) MODULE(math) #ifdef CUCKOO MODULE(cuckoo) MODULE(androguard) #endif Modify "libyara/Makefile.am" to add androguard module ("MODULES += modules/androguard.c") in the cuckoo block: MODULES = modules/tests.c MODULES += modules/pe.c if CUCKOO MODULES += modules/cuckoo.c MODULES += modules/androguard.c endif Recompile Yara, but enabling cuckoo module.

FEATURES

ALTERNATIVES

CSRF crumb generation and validation tool for hapi framework.

ARM TrustZone provides a secure execution environment for applications on ARM processors.

WordPress plugin to reduce comment spam with a smarter honeypot.

A tool to profile web applications based on response time discrepancies.

Tenable One Exposure Management Platform is a comprehensive platform for vulnerability management and exposure management.

This article discusses the different types of remote timing attacks and provides defense strategies against them.

An application security platform that combines API discovery, multiple security testing methodologies, and continuous monitoring to protect modern applications throughout their development lifecycle.

Automated framework for monitoring and tampering system API calls of native macOS, iOS, and Android apps.