Skip to content

Integrate mthcht/ThreatHunting-Keywords-yara-rules #61

@tstromberg

Description

@tstromberg

As mentioned in #60

It should easy to directly integrate: just extract a copy of it into the third_party directory. The rules seem very focused on Windows, so it will help build up our support there.

We'll want to make sure that we're meeting the license requirements (DRL) correctly:

Attribution — You must give appropriate credit to the original author(s) of the
Rules, provide a link to the project, and indicate if changes were made. You may
do so in any reasonable manner, but not in any way that suggests the licensor endorses
you or your use.

Right now the scanning results will pull out the author, but won't show a link. I'm not yet clear if the license requires credit in our README or whenever we show a match.

Help wanted if anyone wants to taket his on!

Metadata

Metadata

Assignees

No one assigned

    Labels

    enhancementNew feature or request

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions