You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
When a yara rule fires the rule name is stored as a standalone tag. Can it be modified to be stored as 'yara:${yara_rulename}', so that I can search for tags == "yara:*"
Additionally, yara rules support its own tags that would make groups of rules easier to search.
ex.
rule yara_rulename: TAG1 TAG2 TAG3
{
blah
}
Can you work with that?
The text was updated successfully, but these errors were encountered:
When a yara rule fires the rule name is stored as a standalone tag. Can it be modified to be stored as 'yara:${yara_rulename}', so that I can search for tags == "yara:*"
Additionally, yara rules support its own tags that would make groups of rules easier to search.
ex.
rule yara_rulename: TAG1 TAG2 TAG3
{
blah
}
Can you work with that?
The text was updated successfully, but these errors were encountered: