visit ChronicleRadar Options
The performance on the syntax is enabled by functioning over a pre-enriched knowledge design (UDM). As a result, detections that have to have sophisticated and verbose syntax with joins, subqueries and lookups in other platforms might be expressed having a couple of traces of easily comprehensible syntax making use of YARA-L. This makes rule author