Yara-Rules Repository Logo

Yara-Rules Repository

0
Free
Visit Website

Repository of YARA rules to accompany the Trellix ATR blogposts & investigations. We endorse contributing to improve our rules - please send us a pull request with your proposal. In case you discovered a false positive with our rules, please share with us your details in an issue report and we’ll try to improve our Yara rules. Happy Hunting!

FEATURES

ALTERNATIVES

PinCTF is a tool for using Intel's Pin Tool to instrument reverse engineering binaries and count instructions.

A command-line utility for examining Objective-C runtime information in Mach-O files and generating class declarations.

A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.

KLara is a distributed system written in Python that helps Threat Intelligence researchers hunt for new malware using Yara.

Microservice for scanning files with Yara

Hyara is a plugin that simplifies writing YARA rules with various convenient features.

Yaraprocessor allows for scanning data streams in unique ways and dynamic scanning of payloads from network packet captures.

Automatic YARA rule generation for malware repositories.

CyberSecTools logoCyberSecTools

Explore the largest curated directory of cybersecurity tools and resources to enhance your security practices. Find the right solution for your domain.

Copyright © 2024 - All rights reserved