The pattern-matching engine for classifying and identifying malware samples by rules.
rules
detection
hunting
Overview
YARA lets analysts write rules that match textual and binary patterns to classify and hunt for samples. It integrates into pipelines and scanners and is a foundational tool for detection engineering.