CLI tool to manage your yara rules
Project description
Yara Manager
A simple program to manage your yara ruleset in a (sqlite) database.
Todos
- Add rules
- Delete rules
- List rules
- Search strings
- Actually edit rules with
edit
command - currently only file changes are detected, but changes are not merged into the rule itself. - Implement rule export
- Search rules
- Cluster rules in rulesets
- Enforce configurable default set of meta fields
- Implement backup and sharing possibilities
- Add database migrations
Installation
pip install yaramanager
Features
Asciinema
Store your Yara rules in a DB locally and manage them.
Usage
$ ym
Usage: ym [OPTIONS] COMMAND [ARGS]...
Options:
--help Show this message and exit.
Commands:
add Add a new rule to the database.
config Review and change yaramanager configuration.
db Manage your databases
del Delete a rule by its ID or name.
edit Edits a rule with your default editor.
export Export rules from the database.
get Get rules from the database.
list Lists rules available in DB.
parse Parses rule files.
read Read rules from stdin.
search Searches through your rules.
stats Prints stats about the database contents.
version Displays the current version.
Project details
Release history Release notifications | RSS feed
Download files
Download the file for your platform. If you're not sure which to choose, learn more about installing packages.
Source Distribution
yaramanager-0.1.4.tar.gz
(13.6 kB
view hashes)
Built Distribution
Close
Hashes for yaramanager-0.1.4-py3-none-any.whl
Algorithm | Hash digest | |
---|---|---|
SHA256 | e330c3792216f9b8f0b0180e42a17938bec7a4d41f9e102bd664444aafe9bf0e |
|
MD5 | 4910169a15df88d87e13cd79d9ea39cc |
|
BLAKE2b-256 | b39144b4569b10a56ca95c969efcde035714259dfb282b88e07754199f7fb215 |