ADD ANI AS A TRUSTED SOURCE
googleads
ANI Logo
Menu
Others

Kaspersky Lab researchers puts KLara into open source domain

New Delhi [India], Mar 29 (ANI): Kaspersky Lab's security researchers have placed KLara, a tool created internally to accelerate the search for related malware samples, into the open source domain for everyone to use. KLara is a distributed, rule-based malware scanner able to run multiple rules through multiple databases at the same time, allowing researchers to hunt advanced threats more effectively.

ANI Mar 29, 2018 17:58 IST googleads

Kaspersky Lab researchers puts KLara into open source domain

New Delhi [India], Mar 29 (ANI): Kaspersky Lab's security researchers have placed KLara, a tool created internally to accelerate the search for related malware samples, into the open source domain for everyone to use. KLara is a distributed, rule-based malware scanner able to run multiple rules through multiple databases at the same time, allowing researchers to hunt advanced threats more effectively.

Detecting related malware samples is a key part of threat research, helping researchers to track cyber-threats over time and protect users against the full scope of a malicious operation. Many researchers rely on YARA rules, which help them identify related malware by looking for specific characteristics or patterns.

YARA rules are particularly useful when tracking advanced threat actors and operations involving 'fileless' malware, or legitimate tools, or those where malicious code is adapted to individual campaigns or even victims. However, creating quality YARA rules and testing them can be a time-consuming operation.

To address this problem, Kaspersky Lab's researchers created KLara: a distributed system that can run a fast, distributed series of YARA searches, involving multiple rules and multiple sample collections, including researchers' own private malware collections.

This allows related samples to be identified more quickly, leading to faster protection for users. The team has now passed KLara to the open source domain where it is available for everyone to use.

"Detecting cyber-threats requires tools and systems that can hunt effectively for malware - particularly when tracking advanced targeted threat campaigns through months or even years of activity. We created KLara to help us hunt threats better and faster and we'd now like to share it with the rest of the security community so that everyone can enjoy the benefits of the tool," said Dan Demeter, security researcher at Kaspersky Lab and one of KLara's creators.

Further technical and API details can be found on Securelist. The software is open-sourced under GNU General Public License v3.0 and available with no warranty from the developers.

Kaspersky Lab's GitHub account also includes another tool, created and shared by Kaspersky Lab researchers in 2017. Named BitScout, it was created by principal security researcher, Vitaly Kamluk, and can remotely collect vital forensic data such as malware samples without risk of contamination or loss. Further information on BitScout can be found here. (ANI)

Get the App

What to Read Next

Mobile

Nothing Phone (1) reveals camera spec and samples ahead of launch

Nothing Phone (1) reveals camera spec and samples ahead of launch

New Delhi [India], July 10 (ANI): The 'Nothing Phone (1)' is geared up to arrive on July 12 with dual rear cameras, and the company has shared a bunch of raw, unfiltered camera samples to show what all they are capable of.

Read More
Others

New malware automatically subscribes users to premium services

New malware automatically subscribes users to premium services

Washington [US], July 3 (ANI): American tech giant Microsoft's 365 Defender Team has said there's growing popularity of malware that can subscribe users to a premium service without their knowledge.

Read More
Internet

Google bans several malicious India-linked domains

Google bans several malicious India-linked domains

Washington [US], July 2 (ANI): More than a dozen malicious India-linked domains and websites that were being used in attacks targeting users worldwide by hack-for-hire groups have now been banned by American tech giant Google's Threat Analysis Group (TAG).

Read More
Others

Google Chat's new warning banners protect from phishing attacks

Google Chat's new warning banners protect from phishing attacks

Washington [US], May 22 (ANI): Google announced on Thursday that it will now display warning banners against potential phishing and malware attacks coming from personal accounts. In order to prevent phishing, Google has introduced this tweak for Google Chat in its latest expansion.

Read More
Internet

Searches being made easier with Google Drive's new filters rolling out for everyone

Searches being made easier with Google Drive's new filters rolling out for everyone

Washington [US], February 16 (ANI): The Search chips feature, that's supposed to make searching for files in Google Drive easier, is now being made available to all Workspace users, including G Suite Basic and Business users.

Read More
Internet

Google will now warn users when its search results might be unreliable

Google will now warn users when its search results might be unreliable

Washington [US], June 25 (ANI): Google will now be telling its users when search results are rapidly changing around a breaking story, with some searches bringing up a warning that "it looks like these results are changing quickly," and a subheading that will explain "if this topic is new, it can sometimes take time for results to be added by reliable sources."

Read More
Internet

Google now lets users password-protect their Web and Activity page

Google now lets users password-protect their Web and Activity page

Washington [US], May 25 (ANI): Tech giant Google has added password protection to 'Web and Activity' page in a bid to help protect the browsing history and search activities of its users.

Read More
Internet

Google blocks 'The Great Suspender' extension from Chrome

Google blocks 'The Great Suspender' extension from Chrome

New Delhi [India], February 5 (ANI): After detecting malware that could be dangerous to a user's device, Google steps to apparently block 'The Great Suspender' extension from Chrome.

Read More
Internet

Google testing domain-only URLs for Chrome to prevent scams, phishing

Google testing domain-only URLs for Chrome to prevent scams, phishing

Washington D.C. [USA], August 13 (ANI): Tech giant Google is experimenting with the new feature which will allow the display of domain names only in the address bar of Google Chrome and not in the full URLs.

Read More
Internet

Facebook tests information panels powered with Wikipedia for its search results

Facebook tests information panels powered with Wikipedia for its search results

Washington D.C. [USA], June 11 (ANI): Facebook is testing a new feature under which the app will update its search box to display factual information for user searches related to topics like places, public figures, and interests.

Read More
Home About Us Our Products Advertise Contact Us Terms & Condition Privacy Policy

Copyright © aninews.in | All Rights Reserved.