AutoYara
AutoYara is a Java tool that automatically generates YARA rules from malware samples using biclustering algorithms to help analysts create detection rules for malware families.

AutoYara
AutoYara is a Java tool that automatically generates YARA rules from malware samples using biclustering algorithms to help analysts create detection rules for malware families.
AutoYara Description
AutoYara is a Java-based tool that implements an algorithm for automatic YARA rule generation using biclustering techniques. The tool analyzes input files belonging to a specific malware family and creates YARA rules from the provided samples. The tool can operate with as few as 2 sample files and aims to achieve low false positive rates in rule generation. It accepts individual files or entire folders as input, processing files recursively when a directory is provided. Multiple input sources can be specified using multiple -i arguments. AutoYara requires Java 11 or greater to run and outputs generated rules to the current directory by default. Users can customize the output location and filename using the --out parameter. The tool is designed to assist security analysts by automating rule creation for common malware families, allowing them to focus on more complex samples that require manual analysis. The implementation is based on research from the paper "Automatic Yara Rule Generation Using Biclustering" and is provided as research code without warranty or support. A pre-built binary is available for download from the project's release section.
AutoYara FAQ
Common questions about AutoYara including features, pricing, alternatives, and user reviews.
AutoYara is AutoYara is a Java tool that automatically generates YARA rules from malware samples using biclustering algorithms to help analysts create detection rules for malware families.. It is a Security Operations solution designed to help security teams with Research, Malware, Automation.
FEATURED
Fix-first AppSec powered by agentic remediation, covering SCA, SAST & secrets.
Cybercrime intelligence tools for searching compromised credentials from infostealers
Password manager with end-to-end encryption and identity protection features
Fractional CISO services for B2B companies to build security programs
POPULAR
Real-time OSINT monitoring for leaked credentials, data, and infrastructure
A threat intelligence aggregation service that consolidates and summarizes security updates from multiple sources to provide comprehensive cybersecurity situational awareness.
AI security assurance platform for red-teaming, guardrails & compliance
TRENDING CATEGORIES
Stay Updated with Mandos Brief
Get strategic cybersecurity insights in your inbox