Jump to content

Recommended Posts

Antipova Anna
Posted

Advice and Solutions (Forum Knowledgebase) Disclaimer. Read before using materials.

If you are writing your own rules for YARA engine on Central Node, you may need available modules in YARA and engine version.

Engine version is 3.7-3.11 in KATA 3.7.x

Engine version is 4.10 in KATA 4.1 and KATA 5.0

Here's the list of modules:

  • tests
  • pe
  • elf
  • math
  • time
  • pe_utils
  • magic
  • hash
  • dotnet
  • dex

For more info on modules, please refer to YARA documentation.

Please sign in to comment

You will be able to leave a comment after signing in



Sign In Now


×
×
  • Create New...