Video: YARA Rules for Office Maldocs

Published: 2021-11-28
Last Updated: 2021-11-28 00:02:27 UTC
by Didier Stevens (Version: 1)
In this video, I show and explain the YARA rules I covered in diary entries "Extra Tip For Triage Of MALWARE Bazaar's Daily Malware Batches" , "Simple YARA Rules for Office Maldocs" and "YARA Rule for OOXML Maldocs: Less False Positives".

Didier Stevens
Senior handler
Microsoft MVP

Keywords: maldoc office video yara
