mirror of
https://github.com/mandiant/capa.git
synced 2026-02-04 19:12:01 -08:00
Sync capa rules submodule
This commit is contained in:
@@ -11,7 +11,7 @@ It includes many new rules, including all new techniques introduced in MITRE ATT
|
||||
- main: use FLIRT signatures to identify and ignore library code #446 @williballenthin
|
||||
- explorer: IDA 7.6 support #497 @williballenthin
|
||||
|
||||
### New Rules (63)
|
||||
### New Rules (64)
|
||||
|
||||
- anti-analysis/packer/amber/packed-with-amber @gormaniac
|
||||
- collection/file-managers/gather-3d-ftp-information @re-fox
|
||||
@@ -76,6 +76,7 @@ It includes many new rules, including all new techniques introduced in MITRE ATT
|
||||
- nursery/list-containers @williballenthin
|
||||
- nursery/run-in-container @williballenthin
|
||||
- persistence/registry/appinitdlls/disable-appinit_dlls-code-signature-enforcement @williballenthin
|
||||
- collection/password-manager/steal-keepass-passwords-using-keefarce @Ana06
|
||||
-
|
||||
|
||||
### Bug Fixes
|
||||
|
||||
@@ -2,7 +2,7 @@
|
||||
|
||||
[](https://pypi.org/project/flare-capa)
|
||||
[](https://github.com/fireeye/capa/releases)
|
||||
[](https://github.com/fireeye/capa-rules)
|
||||
[](https://github.com/fireeye/capa-rules)
|
||||
[](https://github.com/fireeye/capa/actions?query=workflow%3ACI+event%3Apush+branch%3Amaster)
|
||||
[](https://github.com/fireeye/capa/releases)
|
||||
[](LICENSE.txt)
|
||||
|
||||
2
rules
2
rules
Submodule rules updated: 187e08aafe...2f6924d542
Reference in New Issue
Block a user