Threat hunting with Yara: The red pill approach
Guest Post: Learn how to combine Yara with other tools to have full control over the condition validation process.
CARVIEW |
Vitaly Kamluk is Director of the Global Research and Analysis Team for Kaspersky Asia Pacific. He is a trainer in malware analysis, YARA for malware hunters, and remote digital forensics.
By Vitaly Kamluk on 30 Mar 2022
Guest Post: Learn how to combine Yara with other tools to have full control over the condition validation process.
By Vitaly Kamluk on 23 Mar 2022
Guest Post: Learn how to use Yara’s native hexadecimal pattern definition features to create fast rules with fewer false positives and no alarming nested loops.
By Vitaly Kamluk on 16 Mar 2022
Guest Post: Learn how to use Yara’s math module and min/max functions to measure distance between patterns.
By Vitaly Kamluk on 9 Mar 2022
Guest Post: Get to know how to use Yara with real-life research problems — detecting code evolution and shellcodes.