Skip to content

Conversation

@jfgmesquita
Copy link

Hello,

I noticed that the utils folder is present in the repository, containing files such as ip.yar, url.yar, magic.yar and suspicious_strings.yar, but it is currently missing from the Categories section in the README.md.

After analysing the contents, I have drafted a description to fill this gap, maintaining the existing style of the documentation.

Changes:

  • Added a new Utils section to README.md.
  • The description follows the existing style and summarises the utility of these rules as building blocks for broader analysis.

Proposed text:

Utils

In this section you will find Yara rules specialised toward the identification of common data patterns and generic forensic indicators. These rules serve as building blocks to detect network identifiers, file structures, or suspicious artifacts useful for broader analysis.

I hope this contribution helps improve the project's documentation.

Copilot AI review requested due to automatic review settings December 16, 2025 00:36
Copy link

Copilot AI left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull request overview

This PR adds documentation for the previously undocumented utils category in the README. The utils folder contains YARA rules for detecting common data patterns and forensic indicators but was missing from the Categories section.

Key changes:

  • Added a new "Utils" section to the Categories documentation in README.md

💡 Add Copilot custom instructions for smarter, more guided reviews. Learn how to get started.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant