Skip to content

Write an example of using yara rules to exclude false positives #1

@gallypette

Description

@gallypette

Sometimes we identify items that matches a tracker but that are not of interest and that follow some patterns:

  • the service's username is the same,
  • there is some recurring strings, etc.

To exclude these from the results, the easiest is to use yara rules in the first place, and update these to exclude false positives.

Metadata

Metadata

Assignees

Labels

No labels
No labels

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions