Skip to main content

Is there a way to export the yara-l detection rules out of Chronicle? 

Hi, 
You’ll need to use the CLI for this type of action.
This documentation covers the Detection Engine API, which provides methods like ListRules that allow you to retrieve your YARA-L rules.


Reply