CLI tool to manage your yara rules
Project description
Yara Manager
A simple program to manage your yara ruleset in a (sqlite) database.
Todos
- Add rules
- Delete rules
- List rules
- Search strings
- Search rules
- Cluster rules in rulesets
- Enforce configurable default set of meta fields
- Actually edit rules with
edit
command - currently only file changes are detected, but changes are not merged into the rule itself. - Implement rule export, backup and sharing possibilities
- Add database migrations
Installation
pip install yaramanager
Features
Asciinema
Store your Yara rules in a DB locally and manage them.
Usage
$ ym
Usage: ym [OPTIONS] COMMAND [ARGS]...
Options:
--help Show this message and exit.
Commands:
add Add a new rule to the database.
config Review and change yaramanager configuration.
db Manage your databases
del Delete a rule by its ID or name.
edit (Not implemented) Edits a rule with your default editor.
list Lists rules available in DB.
parse Parses rule files.
search Searches through your rules.
stats Prints stats about the database contents.
Project details
Release history Release notifications | RSS feed
Download files
Download the file for your platform. If you're not sure which to choose, learn more about installing packages.
Source Distribution
yaramanager-0.1.1.tar.gz
(12.5 kB
view hashes)
Built Distribution
Close
Hashes for yaramanager-0.1.1-py3-none-any.whl
Algorithm | Hash digest | |
---|---|---|
SHA256 | 7f86696467fd60797cb3007a49fcfaeaafc3a65d208dc56cbf7fb276f5060145 |
|
MD5 | b00f443b392bf7f4ab7b42e5f68d1ec9 |
|
BLAKE2b-256 | 55ea27b571bc6dbc8271e3d0ae629f3ba95e206b6f9db97486518696db114161 |