Threat Level: green Handler on Duty: Didier Stevens

SANS ISC: SANS Internet Storm Center SANS Internet Storm Center


Sign Up for Free!   Forgot Password?
Log In or Sign Up for Free!

Latest Diaries

YARA Release v4.1.0

Published: 2021-05-01
Last Updated: 2021-05-01 21:31:22 UTC
by Didier Stevens (Version: 1)
0 comment(s)

YARA version 4.1.0 was released.

There are no major changes. Some new string testing functions: icontains, ...

Most surprising to me was the addition of the \t escape sequence in text strings. I didn't know this wasn't supported in prior versions.

 

Didier Stevens
Senior handler
Microsoft MVP
blog.DidierStevens.com DidierStevensLabs.com

Keywords:
0 comment(s)

If you have more information or corrections regarding our diary, please share.

Recent Diaries

Qiling: A true instrumentable binary emulation framework
Apr 30th 2021
2 days ago by Remco (0 comments)

From Python to .Net
Apr 29th 2021
3 days ago by Xme (0 comments)

Deeper Analyzis of my Last Malicious PowerPoint Add-On
Apr 28th 2021
4 days ago by Xme (0 comments)

Diving into a Singapore Post Phishing E-mail
Apr 27th 2021
5 days ago by Yee Ching (0 comments)

CAD: .DGN and .MVBA Files
Apr 26th 2021
5 days ago by DidierStevens (0 comments)

Sysinternals: Procmon and Sysmon update
Apr 25th 2021
6 days ago by DidierStevens (0 comments)

Wireshark 3.4.5 Released
Apr 25th 2021
6 days ago by DidierStevens (0 comments)

View All Diaries →

Latest Discussions

API port data
created Apr 25th 2021
1 week ago by JJ (1 reply)

RSS feed containing non-XML compatible characters
created Apr 14th 2021
2 weeks ago by Anonymous (1 reply)

Handler's Diary (Full text) RSS Feeds stopt working due to a typo
created Mar 5th 2021
1 month ago by bas.auer@auerplace.nl (0 replies)

port_scan issue in Snort3
created Feb 23rd 2021
2 months ago by astraea (0 replies)

PFSense
created Dec 23rd 2020
4 months ago by bas.auer@auerplace.nl (6 replies)

View All Forums →

Latest News

Top Diaries

Maldocs: Protection Passwords
Feb 28th 2021
2 months ago by DidierStevens (0 comments)

An infection from Rig exploit kit
Jun 17th 2019
1 year ago by Brad (0 comments)

Qakbot infection with Cobalt Strike
Mar 3rd 2021
1 month ago by Brad (0 comments)

Fun with DNS over TLS (DoT)
Mar 1st 2021
2 months ago by Rob VandenBrink (0 comments)

Adversary Simulation with Sim
Mar 2nd 2021
2 months ago by Russ McRee (0 comments)