Using YARA for ransomware detection Course
6 minutes
Course description
YARA is a tool for describing and identifying malware on an infected system using unique characteristics such as strings, filenames and hash values. This course explores the use of YARA rules to describe a malware sample and using the YARA tool to scan a computer for signs that it has potentially been infected by the ransomware.Syllabus
Using YARA for ransomware detection
Video - 00:03:00
Practices the development of YARA rules to identify the presence of ransomware on compromised devices, based on extracted features.
Hands-On Ransomware Mitigation: Using YARA for Ransomware Detection
Lab
Exploring ransomware detection with YARA.
Using YARA for ransomware detection assessment
Assessment - 6 questions
Unlock 7 days of free training
- 1,400+ hands-on courses and labs
- Certification practice exams
- Skill assessments
Plans & pricing
Infosec Skills Personal
$299 / year
- 190+ role-guided learning paths (e.g., Ethical Hacking, Threat Hunting)
- 100s of hands-on labs in cloud-hosted cyber ranges
- Custom certification practice exams (e.g., CISSP, Security+)
- Skill assessments
- Infosec peer community support
Infosec Skills Teams
$799 per license / year
- Team administration and reporting
- Dedicated client success manager
-
Single sign-on (SSO)
Easily authenticate and manage your learners by connecting to any identity provider that supports the SAML 2.0 standard.
-
Integrations via API
Retrieve training performance and engagement metrics and integrate learner data into your existing LMS or HRS.
- 190+ role-guided learning paths and assessments (e.g., Incident Response)
- 100s of hands-on labs in cloud-hosted cyber ranges
- Create and assign custom learning paths
- Custom certification practice exams (e.g., CISSP, CISA)
- Optional upgrade: Guarantee team certification with live boot camps