Yaramod is a library that provides parsing of YARA rules into AST and a C++ programming interface to build new YARA rulesets. This project is not associated with the YARA project. Yaramod also comes with Python bindings and this repository should be fully compatible with installation using pip. User Documentation: You can find our documentation on Read the Docs. API Documentation: You can generate the API documentation by yourself. Pass -DYARAMOD_DOCS=ON to cmake and run make doc. License: Copyright (c) 2017 Avast Software, licensed under the MIT license. See the LICENSE file for more details. Yaramod uses third-party libraries or other resources listed, along with their licenses, in the LICENSE-THIRD-PARTY file. Contributing: See RetDec contribution guidelines.
FEATURES
SIMILAR TOOLS
StepSecurity is a platform that enhances GitHub Actions security by providing network egress control, risk discovery, action replacement, and security best practices orchestration.
YLS Language Server for YARA Language with comprehensive features and Python 3.8 support.
Emulates browser functionality to detect exploits targeting browser vulnerabilities.
IDAPython plugin for generating Yara rules/patterns from x86/x86-64 code through parameterization.
A DAST solution that performs automated security testing of APIs and web applications within development workflows and CI/CD pipelines.
APKiD is a tool that identifies compilers, packers, obfuscators, and other weird stuff in APK files.
BunkerWeb is a next-generation and open-source Web Application Firewall (WAF) with seamless integration and user-friendly customization options.
DVTA is a Vulnerable Thick Client Application with various security vulnerabilities.
PINNED

Mandos
Fractional CISO service that helps B2B companies implement security leadership to win enterprise deals, achieve compliance, and develop strategic security programs.

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.