polymorf/findcrypt-yara
IDA pro plugin to find crypto constants (and more) observed · 2026-08-28
Health v2 · maintenance only
32/100
- Activity 0
- Release rhythm 35
- Longevity 100
Flags: no_releases
How is this computed?
round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-02. Adoption (stars, forks) is never an input.
- gap_med: n/a
- age_days: 3453
- days_rel: n/a
- days_push: 652
- n_releases_24m: 0
Adoption not part of the score
1735 stars · 268 forks observed · 2026-08-28
What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-30, confidence not recorded
An IDA Pro plugin that uses YARA rules to scan binaries for known cryptographic constants and other recognizable byte patterns. It helps reverse engineers quickly identify crypto algorithms and other embedded signatures in disassembled code.
Use cases
- find crypto constants in a binary with IDA Pro
- identify AES or SHA tables while reverse engineering malware
- scan a disassembled binary for known byte patterns with YARA rules
- add custom YARA rules to flag patterns in IDA
- locate encryption algorithm usage in firmware
When to avoid
- you use a disassembler other than IDA Pro
- you need standalone binary analysis without IDA Pro
Facets
plugin · maturity active
reverse-engineering search-engine security security reverse-engineering developer-tools windows python ida-pro yara crypto-constants binary-analysis disassembler-plugin linux macos
1 source
- readme: https://github.com/polymorf/findcrypt-yara · fetched 2026-08-28 · 36a64855584a
Member repositories
| Repository | Role | Health v2 |
|---|---|---|
| polymorf/findcrypt-yara | main | 32 |
For agents
markdown · JSON · MCP: product_card(name="polymorf/findcrypt-yara")
Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem