Skip to content

Question : yara to stix conversion #637

@wehbemariam

Description

@wehbemariam

Hello,

Is there a tool that convert yara rules conversion to STIX 2.1objects while fully respecting the STIX 2.1 specification (i.e. generating well-structured indicator objects with proper fields like pattern, pattern_type, valid_from, and appropriate observable mappings). To be compatible with tools like STIX 2.1, Python library or OpenCTI.

I tried the converter https://github.com/muchdogesec/yara2stix but unfortunately it produces output that does not align properly with the STIX 2.1 standard and lacks semantic structure.

I’d be very grateful if anyone knows such a tool or has worked on it and could share it or even point me toward documentation, examples, or prototypes.

Thank you

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions