Willi Ballenthin
|
1a498d1afc
|
main: fix reference error
|
2023-01-20 16:21:44 +01:00 |
|
Willi Ballenthin
|
33a46cc633
|
ci: cache the ruleset
|
2023-01-20 16:19:46 +01:00 |
|
Willi Ballenthin
|
b3b9ec11dd
|
pyinstaller: package up the cache directory, too
|
2023-01-20 16:11:00 +01:00 |
|
Willi Ballenthin
|
a7afdec2e1
|
cache: accept cache_dir parameter
|
2023-01-20 16:10:41 +01:00 |
|
Willi Ballenthin
|
56a0bedac9
|
scripts: add tool to cache a ruleset to a directory
|
2023-01-20 15:50:17 +01:00 |
|
Willi Ballenthin
|
f451fe68e1
|
pep8/mypy
|
2023-01-20 15:42:22 +01:00 |
|
Willi Ballenthin
|
946816e377
|
cache: improve variable name
|
2023-01-20 15:26:17 +01:00 |
|
Willi Ballenthin
|
99af09fce5
|
main: revert wording change, which was just churn
|
2023-01-20 15:24:34 +01:00 |
|
Willi Ballenthin
|
0888e5ad69
|
main: more doc
|
2023-01-20 15:22:43 +01:00 |
|
Willi Ballenthin
|
c423ccec67
|
add tests for ruleset caching
|
2023-01-20 15:20:26 +01:00 |
|
Willi Ballenthin
|
03f72f498e
|
cache: use zlib to reduce cache size
|
2023-01-20 15:20:10 +01:00 |
|
Willi Ballenthin
|
fbd7c566f4
|
cache: add more helpers
to enable better testing
|
2023-01-20 15:19:48 +01:00 |
|
Willi Ballenthin
|
e09d35bbb9
|
main: fix rule content decoding
|
2023-01-20 15:01:05 +01:00 |
|
Willi Ballenthin
|
e644775ad1
|
changelog
|
2023-01-20 14:52:47 +01:00 |
|
Willi Ballenthin
|
6ad471a914
|
Merge branch 'master' into rules-cache
|
2023-01-20 14:51:32 +01:00 |
|
Willi Ballenthin
|
476ffabae9
|
rules: cache the ruleset to disk
ref: #1212
|
2023-01-20 14:50:00 +01:00 |
|
Willi Ballenthin
|
4b7a9e149f
|
rules: move to directory structure
|
2023-01-20 13:27:30 +01:00 |
|
Capa Bot
|
49c18bd83d
|
Sync capa rules submodule
|
2023-01-20 12:15:23 +00:00 |
|
Capa Bot
|
67717761bd
|
Sync capa rules submodule
|
2023-01-20 12:15:02 +00:00 |
|
Capa Bot
|
b10196cdac
|
Sync capa rules submodule
|
2023-01-20 11:12:04 +00:00 |
|
Moritz
|
fa0ddba436
|
add format to global features and code refactors (#1284)
* refactor: get format handling
* add format to global features
|
2023-01-19 13:31:00 +01:00 |
|
Capa Bot
|
0fb3be359f
|
Sync capa rules submodule
|
2023-01-19 12:12:41 +00:00 |
|
Capa Bot
|
26662e99de
|
Sync capa rules submodule
|
2023-01-19 12:11:19 +00:00 |
|
Willi Ballenthin
|
5513d4ca43
|
viv: insn: string: handle viv bug around substrings (#1273)
* viv: insn: string: handle viv bug around substrings
closes #1271
* use minimum string length 4
* update overlapping string test and fixup vivisect elf analysis missing function
Co-authored-by: Moritz <mr-tz@users.noreply.github.com>
|
2023-01-19 13:02:53 +01:00 |
|
Capa Bot
|
2b07ec925c
|
Sync capa rules submodule
|
2023-01-19 11:23:42 +00:00 |
|
Capa Bot
|
efb4c9d540
|
Sync capa rules submodule
|
2023-01-19 10:58:26 +00:00 |
|
Moritz
|
b8de9625ee
|
fix: don't extract invalid calls from features (#1285)
|
2023-01-19 11:56:13 +01:00 |
|
Willi Ballenthin
|
607daa345e
|
Merge pull request #1288 from mandiant/dependabot/pip/wcwidth-0.2.6
build(deps): bump wcwidth from 0.2.5 to 0.2.6
|
2023-01-19 11:43:35 +01:00 |
|
Capa Bot
|
35e6df6f6b
|
Sync capa rules submodule
|
2023-01-18 15:10:43 +00:00 |
|
dependabot[bot]
|
cb1ef965d0
|
build(deps): bump wcwidth from 0.2.5 to 0.2.6
Bumps [wcwidth](https://github.com/jquast/wcwidth) from 0.2.5 to 0.2.6.
- [Release notes](https://github.com/jquast/wcwidth/releases)
- [Commits](https://github.com/jquast/wcwidth/compare/0.2.5...0.2.6)
---
updated-dependencies:
- dependency-name: wcwidth
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2023-01-16 14:03:54 +00:00 |
|
Capa Bot
|
2ab057a24d
|
Sync capa rules submodule
|
2023-01-12 13:15:35 +00:00 |
|
Capa Bot
|
12f8588c03
|
Sync capa-testfiles submodule
|
2023-01-12 12:59:01 +00:00 |
|
Capa Bot
|
3571f35578
|
Sync capa rules submodule
|
2023-01-12 11:57:41 +00:00 |
|
Willi Ballenthin
|
803fe321d1
|
Merge pull request #1283 from mandiant/fix/issue-1282
better detect invalid rules
|
2023-01-12 12:56:25 +01:00 |
|
Willi Ballenthin
|
cf42670e97
|
Merge branch 'master' into fix/issue-1282
|
2023-01-12 12:31:11 +01:00 |
|
Willi Ballenthin
|
ac36b9d328
|
changelog
|
2023-01-12 10:39:36 +01:00 |
|
Willi Ballenthin
|
9a9f72f07a
|
pep8
|
2023-01-12 10:38:52 +01:00 |
|
Willi Ballenthin
|
4b9a844c92
|
rules: catch invalid YAML exception
|
2023-01-12 10:38:26 +01:00 |
|
Moritz
|
a273ad31d4
|
make read consistent with file object behavior (#1281)
|
2023-01-11 17:17:04 +01:00 |
|
Willi Ballenthin
|
16f3164865
|
Merge pull request #1280 from mandiant/revert-1275-dependabot/pip/networkx-3.0
Revert "build(deps): bump networkx from 2.5.1 to 3.0"
|
2023-01-11 12:16:47 +01:00 |
|
Willi Ballenthin
|
5fb9de775f
|
setup: document networkx dep version pin
|
2023-01-11 10:50:55 +01:00 |
|
Willi Ballenthin
|
05879dc02a
|
Revert "build(deps): bump networkx from 2.5.1 to 3.0"
|
2023-01-11 10:49:04 +01:00 |
|
Willi Ballenthin
|
d5cb36151f
|
Merge pull request #1275 from mandiant/dependabot/pip/networkx-3.0
build(deps): bump networkx from 2.5.1 to 3.0
|
2023-01-10 16:52:45 +01:00 |
|
Moritz
|
b6fd95c7b8
|
use positive error return code numbers (#1274)
|
2023-01-10 13:14:23 +01:00 |
|
Willi Ballenthin
|
8ce570cea7
|
Merge pull request #1276 from mandiant/dependabot/pip/termcolor-2.2.0
build(deps): bump termcolor from 2.1.1 to 2.2.0
|
2023-01-10 12:25:01 +01:00 |
|
Willi Ballenthin
|
5b82ed2fd9
|
Merge pull request #1270 from mandiant/fix/issue-1267
features: string: better __str__ embedded whitespace
|
2023-01-10 12:21:27 +01:00 |
|
Capa Bot
|
37a4dbf822
|
Sync capa rules submodule
|
2023-01-09 15:53:03 +00:00 |
|
dependabot[bot]
|
ef86160d88
|
build(deps): bump termcolor from 2.1.1 to 2.2.0
Bumps [termcolor](https://github.com/termcolor/termcolor) from 2.1.1 to 2.2.0.
- [Release notes](https://github.com/termcolor/termcolor/releases)
- [Changelog](https://github.com/termcolor/termcolor/blob/main/CHANGES.md)
- [Commits](https://github.com/termcolor/termcolor/compare/2.1.1...2.2.0)
---
updated-dependencies:
- dependency-name: termcolor
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2023-01-09 14:03:48 +00:00 |
|
dependabot[bot]
|
5f31bdbb3e
|
build(deps): bump networkx from 2.5.1 to 3.0
Bumps [networkx](https://github.com/networkx/networkx) from 2.5.1 to 3.0.
- [Release notes](https://github.com/networkx/networkx/releases)
- [Commits](https://github.com/networkx/networkx/compare/networkx-2.5.1...networkx-3.0)
---
updated-dependencies:
- dependency-name: networkx
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2023-01-09 14:03:44 +00:00 |
|
Capa Bot
|
810e2d70d3
|
Sync capa rules submodule
|
2023-01-09 13:38:25 +00:00 |
|