Arnim Rupp
73f121cf03
Update capa2yara.py
...
bugfix: https://github.com/fireeye/capa-rules/blob/master/collection/get-geographical-location.yml hit an far too many files with /\bcity opposed to the intention of the capa rule ti just hit in function names. changed to /\x00city.
2021-05-21 16:51:14 +02:00
Capa Bot
72da8f3aed
Sync capa rules submodule
2021-05-21 07:12:57 +00:00
Ana Maria Martinez Gomez
83606bbc0f
changelog: convert capa rules to YARA rules
...
Add https://github.com/fireeye/capa/pull/561 to CHANGELOG.
2021-05-20 11:25:24 +02:00
Moritz
caaeded278
Merge pull request #563 from fireeye/ci/lint-statement-children
...
lint statements for single child statements
2021-05-20 10:41:41 +02:00
Willi Ballenthin
dcf4a056ee
show-features: skip library functions ( #570 )
...
* show-features: skip library functions
closes #569
* changelog
2021-05-20 10:34:48 +02:00
Capa Bot
f9cec64c2d
Sync capa-testfiles submodule
2021-05-20 08:11:28 +00:00
Capa Bot
66d96201cb
Sync capa rules submodule
2021-05-19 20:31:48 +00:00
Moritz Raabe
586726fb13
lint statements for single child statements
2021-05-19 18:25:14 +02:00
Capa Bot
656cdfc41c
Sync capa rules submodule
2021-05-19 16:21:47 +00:00
Arnim Rupp
7b62b589f7
Create capa2yara.py ( #561 )
...
* Create capa2yara.py
* Update capa2yara.py
isort --profile black --length-sort --line-width 120
black -l 120
* Update scripts/capa2yara.py
Co-authored-by: Willi Ballenthin <willi.ballenthin@gmail.com >
Co-authored-by: Arnim Rupp <46819580+2d4d@users.noreply.github.com >
Co-authored-by: Moritz <mr-tz@users.noreply.github.com >
Co-authored-by: Willi Ballenthin <willi.ballenthin@gmail.com >
2021-05-19 18:01:04 +02:00
Capa Bot
e7884c9a53
Sync capa rules submodule
2021-05-19 07:50:11 +00:00
William Ballenthin
9ed6e12e7c
Merge branch 'master' of github.com:fireeye/capa
2021-05-18 13:35:59 -06:00
William Ballenthin
ec5cec619d
rules: add tests demonstrating mnemonic descriptions
2021-05-18 13:35:24 -06:00
Capa Bot
760867b81e
Sync capa rules submodule
2021-05-17 15:00:45 +00:00
Capa Bot
abeaac0675
Sync capa rules submodule
2021-05-17 10:14:49 +00:00
Moritz
010866a3bd
Merge pull request #560 from fireeye/dependabot/pip/pytest-cov-2.12.0
...
build(deps-dev): bump pytest-cov from 2.11.1 to 2.12.0
2021-05-17 12:14:16 +02:00
Capa Bot
8f9f792930
Sync capa rules submodule
2021-05-17 08:36:26 +00:00
Capa Bot
9ccdce9896
Sync capa rules submodule
2021-05-17 08:35:45 +00:00
dependabot[bot]
0dc212f53e
build(deps-dev): bump pytest-cov from 2.11.1 to 2.12.0
...
Bumps [pytest-cov](https://github.com/pytest-dev/pytest-cov ) from 2.11.1 to 2.12.0.
- [Release notes](https://github.com/pytest-dev/pytest-cov/releases )
- [Changelog](https://github.com/pytest-dev/pytest-cov/blob/master/CHANGELOG.rst )
- [Commits](https://github.com/pytest-dev/pytest-cov/compare/v2.11.1...v2.12.0 )
Signed-off-by: dependabot[bot] <support@github.com >
2021-05-17 05:57:20 +00:00
Capa Bot
3cf4a47773
Sync capa rules submodule
2021-05-12 14:23:14 +00:00
Capa Bot
bbf59d65ad
Sync capa rules submodule
2021-05-12 12:14:30 +00:00
Moritz
6b738f754e
Merge pull request #557 from fireeye/dependabot/pip/black-21.5b1
...
build(deps-dev): bump black from 21.4b2 to 21.5b1
2021-05-12 07:35:43 +02:00
dependabot[bot]
83a4e054d1
build(deps-dev): bump black from 21.4b2 to 21.5b1
...
Bumps [black](https://github.com/psf/black ) from 21.4b2 to 21.5b1.
- [Release notes](https://github.com/psf/black/releases )
- [Changelog](https://github.com/psf/black/blob/main/CHANGES.md )
- [Commits](https://github.com/psf/black/commits )
Signed-off-by: dependabot[bot] <support@github.com >
2021-05-11 17:42:03 +00:00
Moritz
9843776460
Merge pull request #552 from fireeye/dependabot/pip/pytest-6.2.4
...
build(deps-dev): bump pytest from 6.2.3 to 6.2.4
2021-05-11 19:40:43 +02:00
dependabot[bot]
2626572ddc
build(deps-dev): bump pytest from 6.2.3 to 6.2.4
...
Bumps [pytest](https://github.com/pytest-dev/pytest ) from 6.2.3 to 6.2.4.
- [Release notes](https://github.com/pytest-dev/pytest/releases )
- [Changelog](https://github.com/pytest-dev/pytest/blob/main/CHANGELOG.rst )
- [Commits](https://github.com/pytest-dev/pytest/compare/6.2.3...6.2.4 )
Signed-off-by: dependabot[bot] <support@github.com >
2021-05-11 16:51:23 +00:00
Moritz
e3af23f209
Merge pull request #551 from fireeye/dependabot/pip/vivisect-1.0.3
...
build(deps): bump vivisect from 1.0.1 to 1.0.3
2021-05-11 18:48:16 +02:00
dependabot[bot]
0f16787ef9
build(deps): bump vivisect from 1.0.1 to 1.0.3
...
Bumps [vivisect](https://github.com/vivisect/vivisect ) from 1.0.1 to 1.0.3.
- [Release notes](https://github.com/vivisect/vivisect/releases )
- [Changelog](https://github.com/vivisect/vivisect/blob/master/CHANGELOG.rst )
- [Commits](https://github.com/vivisect/vivisect/compare/v1.0.1...v1.0.3 )
Signed-off-by: dependabot[bot] <support@github.com >
2021-05-11 15:01:03 +00:00
Moritz
495a270c99
Update CHANGELOG.md
2021-05-11 16:32:54 +02:00
Moritz
424a25cb91
Fix tests on Windows - reduced memory impact and general fixes ( #545 )
...
* Update tests.yml
* Update .github/workflows/tests.yml
* Update tests.yml
* update
* min tests
* enable all, no sigpaths
* update cache
* save workspace, log caching
* updated tests
* update tests
* update rec call test
* lower cache size
* address Ana's feedback
2021-05-11 16:29:01 +02:00
Capa Bot
fa0809685e
Sync capa rules submodule
2021-05-11 11:10:45 +00:00
Ana Maria Martinez Gomez
188966a94b
changelog: support multiple authors
...
GH didn't support multiple authors, producing a breaking entry in the
last update. Correct the entry and mention the fix in the CHANGELOG.
https://github.com/fireeye/capa/issues/555
2021-05-11 12:48:30 +02:00
Capa Bot
d7b7e0111e
Sync capa rules submodule
2021-05-10 08:24:40 +00:00
Capa Bot
be11223e4b
Sync capa rules submodule
2021-05-07 15:06:52 +00:00
Ana Maria Martinez Gomez
2cbf5147c0
changelog: add #517 and capa/rules/374
...
Add to the changelog that we now update `New Rules` section in CHANGELOG
automatically.
2021-05-07 17:01:55 +02:00
Capa Bot
5b026df5f4
Sync capa rules submodule
2021-05-07 14:47:03 +00:00
Ana María Martínez Gómez
ac842c95d3
Merge pull request #549 from Ana06/changelog
...
Update CHANGELOG and release
2021-05-07 16:34:08 +02:00
Capa Bot
aaaeec4de7
Sync capa rules submodule
2021-05-07 13:54:11 +00:00
Capa Bot
99a7380faf
Sync capa-testfiles submodule
2021-05-07 12:49:58 +00:00
Ana Maria Martinez Gomez
f43ffabded
doc: add item to release checklist
...
We should update capa everywhere after releasing!
2021-05-07 12:55:02 +02:00
Ana Maria Martinez Gomez
52c0cfd5d0
changelog: prepare to automatize new rules entries
...
Use an empty item in the `New Rules` section as a marker for the GitHub
Action. If this causes problems, we could look into other solution such
as writing 2 lines before `### Bug Fixes`. But I think this is the
easiest I can come up with. So lets give it a try.
2021-05-07 12:55:02 +02:00
Ana Maria Martinez Gomez
1caf4a7fbf
changelog: add missing changes
...
Add missing changes to CHANGELOG. It should be up-to-date now, with the
exception of the dependencies updates which I think need discussion.
2021-05-07 12:54:59 +02:00
Ana Maria Martinez Gomez
98a976fa72
changelog: add v1.6.3
...
Add v1.6.3 release which backports IDA 7.6 support to Python 2. Also
remove the capa-rules raw diff as there are not changes (and the tag
doesn't exist).
2021-05-06 23:25:53 +02:00
Capa Bot
3a883807e5
Sync capa rules submodule
2021-05-06 18:07:01 +00:00
Capa Bot
b1b34db0b6
Sync capa rules submodule
2021-05-04 13:43:40 +00:00
Capa Bot
4901cd1da1
Sync capa-testfiles submodule
2021-05-04 07:26:14 +00:00
Capa Bot
272471e158
Sync capa rules submodule
2021-05-03 22:42:41 +00:00
William Ballenthin
8f0ce11ff6
tests: register common FLIRT sigs
...
closes #538
2021-05-01 08:06:56 -06:00
Willi Ballenthin
e8c807b993
Merge pull request #541 from fireeye/dependabot/pip/black-21.4b2
...
build(deps-dev): bump black from 21.4b0 to 21.4b2
2021-05-03 08:35:32 -06:00
dependabot[bot]
0b1c80d4d5
build(deps-dev): bump black from 21.4b0 to 21.4b2
...
Bumps [black](https://github.com/psf/black ) from 21.4b0 to 21.4b2.
- [Release notes](https://github.com/psf/black/releases )
- [Changelog](https://github.com/psf/black/blob/master/CHANGES.md )
- [Commits](https://github.com/psf/black/commits )
Signed-off-by: dependabot[bot] <support@github.com >
2021-05-03 06:36:46 +00:00
Capa Bot
82ce223c9b
Sync capa-testfiles submodule
2021-04-30 21:06:56 +00:00