yara-rules-re icon indicating copy to clipboard operation
yara-rules-re copied to clipboard

Tools for inspecting YARA bytecode

Tools for inspecting YARA bytecode

This repository contains tools promised for release during my talk "Rules as code: A look at the YARA compiler's output" held at ReversingLabs' Reversing 2020 online event.

  • Bytecode dumper/disassembler
  • Bytecode assembler (not yet published, needs more debugging)
  • Examples

Author

Hilko Bengen <[email protected]>