Threat Level: green Handler on Duty: Johannes Ullrich

SANS ISC: InfoSec Handlers Diary Blog - SANS Internet Storm Center InfoSec Handlers Diary Blog

Sign Up for Free!   Forgot Password?
Log In or Sign Up for Free!

Video: YARA Rules for Office Maldocs

Published: 2021-11-28
Last Updated: 2021-11-28 00:02:27 UTC
by Didier Stevens (Version: 1)
0 comment(s)

In this video, I show and explain the YARA rules I covered in diary entries "Extra Tip For Triage Of MALWARE Bazaar's Daily Malware Batches" , "Simple YARA Rules for Office Maldocs" and "YARA Rule for OOXML Maldocs: Less False Positives".

Didier Stevens
Senior handler
Microsoft MVP

Keywords: maldoc office video yara
0 comment(s)
Diary Archives