Files
main/Yara
2022-08-20 09:36:22 -05:00
..
2022-08-20 09:36:22 -05:00
2022-08-18 10:37:32 -05:00
2022-08-20 09:34:55 -05:00

YARA Integration Awesome

YARA is a tool aimed at (but not limited to) helping malware researchers to identify and classify malware samples. With YARA you can create descriptions of malware families (or whatever you want to describe) based on textual or binary patterns. Each description, a.k.a. rule, consists of a set of strings and a boolean expression which determine its logic.

Must have YARA installed on your endpoints

MIT License LinkedIn your-own-soc-free-for-life-tier

YARA Github

Set your YARA scan to run at set intervals by incorporating a Cronjob to run the yara_full_scan.sh script.

Need Help?

SOCFortress - LinkedIn - info@socfortress.co

Let SOCFortress Professional Services Take Your Open Source SIEM to the Next Level

Banner