Skip to content

Feature: Allow for searching with Yara #801

@rjzak

Description

@rjzak

Allow users to search through the collections using Yara.

  • Use yara_x
  • User submits a rule:
    • Validate rule
    • Generate a uuid and store the rule
    • Separate thread checks contents against rules, updates the database with results
    • User can query for results later
    • Delete results from database after some time period, maybe 24 hours
    • Limit number of results, maybe 1000.

Metadata

Metadata

Assignees

No one assigned

    Labels

    enhancementNew feature or request

    Projects

    Status

    Backlog

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions