Yaraprocessor is a tool that allows for scanning data streams in unique ways, supporting scanning in discrete chunks with overlapping or disjoint options based on the 'processing_mode' selected. Originally written for Chopshop, it enables dynamic scanning of payloads from network packet captures, making writing signatures easier by operating on individual packet payloads or concatenations of payloads.

FEATURES

This tool is not verified yet and doesn't have listed features.

Did you submit the verified tool? Sign in to add features.

Are you the author? Claim the tool by clicking the icon above. After claiming, you can add features.

ALTERNATIVES

A .NET wrapper for libyara that provides a simplified API for developing tools in C# and PowerShell.

angr Logo
0.0

angr is a Python 3 library for binary analysis with various capabilities like symbolic execution and decompilation.

A Django web interface for managing Yara rules with features like search, categorization, and bulk edits.

Collects Yara rules from over 150 free resources, a free alternative to Valhalla.

A deserialization payload generator for .NET formatters

HAWK Logo
0.0

Multi-cloud antivirus scanning API with CLAMAV and YARA support for AWS S3, Azure Blob Storage, and GCP Cloud Storage.