VirusTotal / yara-x

A rewrite of YARA in Rust.
https://virustotal.github.io/yara-x/
BSD 3-Clause "New" or "Revised" License
623 stars 49 forks source link

Feature-Request: scan processes via PID #199

Open Anthony-76 opened 1 day ago

Anthony-76 commented 1 day ago

Hi,

Maybe I post my request in wrong Place. Please excuse me .

I use Yara and it's a nice product.

I beguin to use Yara-X but an important feature for me is (seems to be) not present. It's scan process (with PID number).

This feature will be integrated in the new release or not?

Best regards Anthony

plusvic commented 1 day ago

It's not likely to be implemented anytime soon. There are a lot of other things higher in the list. There's a brief comment about this in the documentation: https://virustotal.github.io/yara-x/docs/intro/yara-x-vs-yara/#no-process-scanning