Kaspersky Lab Open-Sources its Threat-Hunting Tool

'KLara' was built to speed up and automate the process of identifying malware samples.

Dark Reading Staff, Dark Reading

March 28, 2018

1 Min Read
Dark Reading logo in a gray background | Dark Reading

Kaspersky Lab is now offering its homegrown threat-hunting application KLara as an open-source tool, the company said today.

KLara is a YARA rules-based malware scanner that runs multiple YARA identifier rules across multiple databases simultaneously as a way to speed up the process of malware identification. Kaspersky Lab said it created the tool as a distributed system for YARA searches that includes researchers' own malware collections as well as others. 

"Detecting cyberthreats requires tools and systems that can hunt effectively for malware – particularly when tracking advanced targeted threat campaigns through months or even years of activity," said Dan Demeter, security researcher at Kaspersky Lab and one the creators of  KLara. "We created KLara to help us hunt threats better and faster" and are now sharing it with the security community, he said.

The open source tool is available via GitHub.

 

 

About the Author

Dark Reading Staff

Dark Reading

Dark Reading is a leading cybersecurity media site.

Keep up with the latest cybersecurity threats, newly discovered vulnerabilities, data breach information, and emerging trends. Delivered daily or weekly right to your email inbox.

You May Also Like


More Insights