William Ballenthin
|
4f15225665
|
lint: handle calls to print within pbar
|
2021-08-27 08:34:02 -06:00 |
|
William Ballenthin
|
90708c123b
|
linter: show progress bar
|
2021-08-27 08:21:09 -06:00 |
|
Willi Ballenthin
|
9e579f9de3
|
tests: viv: reenable elf tests
revert 56f9e16a8b
viv is reverted to v1.0.3 so tests should pass again ref $735
|
2021-08-26 16:50:57 -06:00 |
|
Willi Ballenthin
|
b2c688ef14
|
Merge pull request #746 from fireeye/revert-731-dependabot/pip/vivisect-1.0.4
Revert "build(deps): bump vivisect from 1.0.3 to 1.0.4"
|
2021-08-26 13:00:13 -06:00 |
|
Willi Ballenthin
|
9717acd988
|
Revert "build(deps): bump vivisect from 1.0.3 to 1.0.4"
|
2021-08-26 12:59:49 -06:00 |
|
mike-hunhoff
|
d06c5b12c2
|
Merge pull request #742 from fireeye/fix/740
explorer: small performance boost to rule generator search functionality
|
2021-08-26 10:35:20 -06:00 |
|
Capa Bot
|
e97a120602
|
Sync capa rules submodule
|
2021-08-26 15:12:41 +00:00 |
|
Capa Bot
|
5b806b08dd
|
Sync capa rules submodule
|
2021-08-26 15:12:14 +00:00 |
|
Willi Ballenthin
|
fd5dfcc6d8
|
Merge pull request #743 from fireeye/feature-lint-ntoskrnl-ntdll-exceptions
fix linter ntoskrnl/ntdll exceptions
|
2021-08-26 08:56:45 -06:00 |
|
Michael Hunhoff
|
3979317b10
|
merging upstream
|
2021-08-26 08:26:41 -06:00 |
|
mike-hunhoff
|
8d2595a6db
|
Update README.md
|
2021-08-26 08:20:38 -06:00 |
|
mike-hunhoff
|
3c2c452501
|
Merge pull request #741 from fireeye/doc/explorer-support
explorer: updating support documentation and runtime checks
|
2021-08-26 08:19:01 -06:00 |
|
Michael Hunhoff
|
af48f86e55
|
Merge branch 'doc/explorer-support' of github.com:fireeye/capa into doc/explorer-support
|
2021-08-26 08:16:25 -06:00 |
|
Michael Hunhoff
|
73957ea14e
|
merging upstream
|
2021-08-26 08:15:25 -06:00 |
|
William Ballenthin
|
bb824e9167
|
Merge branch 'master' into feature-lint-ntoskrnl-ntdll-exceptions
|
2021-08-25 16:44:29 -06:00 |
|
William Ballenthin
|
b996e77606
|
setup: add psutil deps to [dev]
|
2021-08-25 16:43:46 -06:00 |
|
William Ballenthin
|
9a20bbd4e1
|
changelog
|
2021-08-25 16:39:57 -06:00 |
|
William Ballenthin
|
8195b7565f
|
lint: hardcoded some exports of ntdll/ntoskrnl to reduce warning spam
|
2021-08-25 16:36:36 -06:00 |
|
William Ballenthin
|
0569f9b242
|
lint: show mod/imp names per rule
fix bug where the same mod/imp name pair was shown for all rules
|
2021-08-25 16:36:08 -06:00 |
|
Michael Hunhoff
|
8ffa8ea2c8
|
explorer: small performance boost to rule generator search functionality
|
2021-08-25 15:45:47 -06:00 |
|
Capa Bot
|
fd7cff6109
|
Sync capa rules submodule
|
2021-08-25 20:34:00 +00:00 |
|
mike-hunhoff
|
a3b292066a
|
Update capa/ida/helpers.py
Co-authored-by: Moritz <mr-tz@users.noreply.github.com>
|
2021-08-25 13:03:45 -06:00 |
|
Michael Hunhoff
|
8f6d38468e
|
explorer: updating support documentation and runtime checks
|
2021-08-25 12:46:34 -06:00 |
|
William Ballenthin
|
4af5cc66ba
|
changelog
|
2021-08-24 17:53:56 -06:00 |
|
William Ballenthin
|
33c3c7e106
|
scripts: profile-memory: show vms, too
|
2021-08-24 17:26:45 -06:00 |
|
William Ballenthin
|
5c75f12b78
|
scripts: profile-memory: show incremental duration and RSS
|
2021-08-24 17:22:18 -06:00 |
|
William Ballenthin
|
1ae6638861
|
Merge branch 'master' of github.com:fireeye/capa
|
2021-08-24 17:05:59 -06:00 |
|
William Ballenthin
|
d8999471c5
|
scripts: add profile-memory
ref #736
|
2021-08-24 17:05:34 -06:00 |
|
Capa Bot
|
90c0de1a7f
|
Sync capa rules submodule
|
2021-08-24 22:48:07 +00:00 |
|
Capa Bot
|
d13ea1cbbe
|
Sync capa rules submodule
|
2021-08-24 22:34:04 +00:00 |
|
Willi Ballenthin
|
03cf28fccd
|
Merge pull request #739 from fireeye/feature-737
rules: add substring feature
|
2021-08-24 16:33:17 -06:00 |
|
William Ballenthin
|
8e757d2099
|
show-features: print function addresses, too
|
2021-08-24 16:32:44 -06:00 |
|
William Ballenthin
|
2989732637
|
tests: fix fva of substring test function
|
2021-08-24 16:32:27 -06:00 |
|
William Ballenthin
|
db45068357
|
tests: fix tests for substring
|
2021-08-24 16:13:41 -06:00 |
|
Capa Bot
|
735aea86e0
|
Sync capa rules submodule
|
2021-08-24 18:41:34 +00:00 |
|
William Ballenthin
|
d8c8c6d2f3
|
lint: apply string lints to substrings, too
|
2021-08-24 11:52:28 -06:00 |
|
William Ballenthin
|
3b4cb47597
|
pep8
|
2021-08-24 11:45:48 -06:00 |
|
William Ballenthin
|
f55e758d47
|
tests: rules: demonstrate substring with description
|
2021-08-24 11:45:24 -06:00 |
|
William Ballenthin
|
c5a5e5600a
|
changelog: substring
|
2021-08-24 11:37:07 -06:00 |
|
William Ballenthin
|
6989e8b8cf
|
rules: add substring feature
closes #737
|
2021-08-24 11:35:01 -06:00 |
|
Capa Bot
|
7d2e550b84
|
Sync capa rules submodule
|
2021-08-24 16:35:30 +00:00 |
|
Capa Bot
|
7f17c45b69
|
Sync capa rules submodule
|
2021-08-24 16:06:15 +00:00 |
|
Willi Ballenthin
|
b0c86ab8db
|
Merge pull request #738 from fireeye/revert-697-dependabot/pip/networkx-2.6.2
Revert "build(deps): bump networkx from 2.5.1 to 2.6.2"
|
2021-08-24 09:50:49 -06:00 |
|
Willi Ballenthin
|
4c0c2c75c6
|
Revert "build(deps): bump networkx from 2.5.1 to 2.6.2"
|
2021-08-24 09:50:39 -06:00 |
|
Capa Bot
|
1549b9b506
|
Sync capa rules submodule
|
2021-08-24 15:47:44 +00:00 |
|
Capa Bot
|
057eeb3629
|
Sync capa-testfiles submodule
|
2021-08-24 15:45:39 +00:00 |
|
Capa Bot
|
0dea4e8b7d
|
Sync capa-testfiles submodule
|
2021-08-24 15:45:04 +00:00 |
|
Willi Ballenthin
|
d3573a565c
|
Merge pull request #723 from fireeye/feature-701
os, arch, and format features
|
2021-08-24 08:56:29 -06:00 |
|
Willi Ballenthin
|
1275b49ebb
|
Merge pull request #697 from fireeye/dependabot/pip/networkx-2.6.2
build(deps): bump networkx from 2.5.1 to 2.6.2
|
2021-08-24 08:56:17 -06:00 |
|
William Ballenthin
|
56f9e16a8b
|
tests: viv: disable ELF tests due to #735
|
2021-08-23 17:51:28 -06:00 |
|