Ross ROSS = Recommend OSS · open-source software intelligence for agents

polymorf/findcrypt-yara

IDA pro plugin to find crypto constants (and more) observed · 2026-08-28

github.com/polymorf/findcrypt-yara · Python · BSD-3-Clause (permissive) observed · 2026-08-28

Health v2 · maintenance only

32/100

  • Activity 0
  • Release rhythm 35
  • Longevity 100

Flags: no_releases

How is this computed?

round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-02. Adoption (stars, forks) is never an input.

  • gap_med: n/a
  • age_days: 3453
  • days_rel: n/a
  • days_push: 652
  • n_releases_24m: 0

Full methodology

Adoption not part of the score

1735 stars · 268 forks observed · 2026-08-28

What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-30, confidence not recorded

An IDA Pro plugin that uses YARA rules to scan binaries for known cryptographic constants and other recognizable byte patterns. It helps reverse engineers quickly identify crypto algorithms and other embedded signatures in disassembled code.

Use cases

  • find crypto constants in a binary with IDA Pro
  • identify AES or SHA tables while reverse engineering malware
  • scan a disassembled binary for known byte patterns with YARA rules
  • add custom YARA rules to flag patterns in IDA
  • locate encryption algorithm usage in firmware

When to avoid

  • you use a disassembler other than IDA Pro
  • you need standalone binary analysis without IDA Pro

Facets

plugin · maturity active

reverse-engineering search-engine security security reverse-engineering developer-tools windows python ida-pro yara crypto-constants binary-analysis disassembler-plugin linux macos

1 source

Member repositories

RepositoryRoleHealth v2
polymorf/findcrypt-yaramain32

For agents

markdown · JSON · MCP: product_card(name="polymorf/findcrypt-yara")

Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem