Yara

Write, compile, and apply YARA rules for malware detection and threat hunting. Use when the user needs to create pattern-matching rules for malware samples, write detection signatures for threat intelligence, scan files or process memory, integrate YARA with ClamAV or LOKI, or work with the YARA-X Rust rewrite. Covers rule syntax, string types, conditions, modules (pe, elf, math, hash, cuckoo), CLI usage, writing detection rules for real-world malware families, and integration into SOC/IR workflows.

jperezduerto Updated

File contents

jperezduerto/redhound-arsenal/tree/main/yara commit 5919b3cce2

Frequently asked questions

npx skillmds@latest add jperezduerto/yara