Forum Discussion

deepak198486's avatar
deepak198486
Copper Contributor
Apr 04, 2023

Is there a way to use or convert YARA rule to Sentinel KQL query for detections

I have noticed that most malware detections are released in YARA language and Sentinel does not have baked in support for YARA rule. Keen to understand how others are dealing with this situation.

Resources