yara-rule-authoring

SKILLWorkflowcommunity
v0.0.0trailofbitsCC-BY-SA-4.0Updated 1mo agoSource →

Guides authoring of high-quality YARA-X detection rules for malware identification. Use when writing, reviewing, or optimizing YARA rules. Covers naming conventions, string selection, performance optimization, migration from legacy YARA, and false positive reduction. Triggers on: YARA, YARA-X, malwa

Community-submitted skill. Not yet reviewed by the Forge team. Full prompt content may not be available.Request review →
7kRepo stars
1Clients
1Formats
1mo agoLast update
Skill
Authortrailofbits
Version0.0.0
LicenseCC-BY-SA-4.0
CategoryWorkflow
Formatsskill.md
PromptOpen (see Prompt tab)
Compatibility
Claude✓ Supported
Cursor—
Copilot—
ChatGPT—
Gemini—
About

Guides authoring of high-quality YARA-X detection rules for malware identification. Use when writing, reviewing, or optimizing YARA rules. Covers naming conventions, string selection, performance optimization, migration from legacy YARA, and false positive reduction. Triggers on: YARA, YARA-X, malware detection, threat hunting, IOC, signature, crx module, dex module.

Keywords
skillclaude

No dependency coverage

This entry publishes no npm package, so Forge has no dependency tree for it. That is a gap in coverage — not a statement that it has no dependencies.