Willi Ballenthin
|
85f151303a
|
merge
|
2023-08-07 08:40:03 +00:00 |
|
Willi Ballenthin
|
216cd01b3c
|
sync test data submodule
|
2023-08-07 08:37:23 +00:00 |
|
Willi Ballenthin
|
5de055e2af
|
Merge pull request #1677 from mandiant/fix/add-devcontainer-pre-commit
devcontainer: install pre-commit hooks
|
2023-08-07 10:01:20 +02:00 |
|
Willi Ballenthin
|
dd870a5cbd
|
Merge pull request #1676 from mandiant/fix/issue-1675
linter: skip native API check for NtProtectVirtualMemory
|
2023-08-07 10:00:59 +02:00 |
|
Capa Bot
|
2c8f99143a
|
Sync capa-testfiles submodule
|
2023-08-05 16:40:13 +00:00 |
|
Capa Bot
|
ee68031d19
|
Sync capa-testfiles submodule
|
2023-08-05 16:37:46 +00:00 |
|
Willi Ballenthin
|
6647ecb6d4
|
Merge branch 'master' into fix/add-devcontainer-pre-commit
|
2023-08-02 15:02:15 +02:00 |
|
Willi Ballenthin
|
13533074ea
|
devcontainer: install pre-commit hooks
|
2023-08-02 13:01:15 +00:00 |
|
Willi Ballenthin
|
a538a7bbab
|
linter: skip native API check for more UEFI routines
|
2023-08-02 12:55:22 +00:00 |
|
Willi Ballenthin
|
b2789f0df6
|
Merge branch 'master' into fix/issue-1675
|
2023-08-02 14:49:32 +02:00 |
|
Willi Ballenthin
|
ab5c8b1129
|
linter: skip native API check for NtEnumerateSystemEnvironmentValuesEx
|
2023-08-02 12:49:17 +00:00 |
|
Capa Bot
|
149983dced
|
Sync capa rules submodule
|
2023-08-02 12:42:03 +00:00 |
|
Willi Ballenthin
|
04fbcbbbd3
|
linter: skip native API check for NtProtectVirtualMemory
closes #1675
|
2023-08-02 12:36:42 +00:00 |
|
Willi Ballenthin
|
727ece499a
|
Merge pull request #1662 from Aayush-Goel-04/Aayush-Goel-04/Issue#1607
ELF: Implement file import and export name extractor
|
2023-08-02 13:15:32 +02:00 |
|
Aayush Goel
|
62f50265bc
|
Resolved Import address
|
2023-08-02 16:41:24 +05:30 |
|
Capa Bot
|
95ffdf19ff
|
Sync capa rules submodule
|
2023-08-02 11:03:52 +00:00 |
|
Capa Bot
|
d18224eac6
|
Sync capa-testfiles submodule
|
2023-08-02 11:03:16 +00:00 |
|
Aayush Goel
|
26935ee6e6
|
Update test_elffile_features.py
|
2023-08-02 13:51:51 +05:30 |
|
Aayush Goel
|
f8c499fb43
|
Added test for elf import/export handling
|
2023-08-02 11:52:27 +05:30 |
|
Willi Ballenthin
|
61924672e2
|
Merge pull request #1671 from yelhamer/rule-statement-building
|
2023-08-01 22:15:03 +02:00 |
|
Yacine Elhamer
|
7fdd988e4f
|
remove redundant imports
|
2023-08-01 20:12:15 +01:00 |
|
Yacine Elhamer
|
a85e0523f8
|
remove Scopes LRU caching
|
2023-08-01 20:09:42 +01:00 |
|
Aayush Goel
|
3bb5754b66
|
Update elffile.py
|
2023-08-01 22:41:11 +05:30 |
|
Aayush Goel
|
dd2eef52c3
|
Update elffile.py
remove enumerate
|
2023-08-01 22:21:00 +05:30 |
|
Willi Ballenthin
|
da45fb4bea
|
Merge branch 'master' into Aayush-Goel-04/Issue#1607
|
2023-08-01 16:34:42 +02:00 |
|
Willi Ballenthin
|
7ed517a8f3
|
Merge pull request #1668 from mandiant/dependabot/pip/types-tabulate-0.9.0.3
build(deps-dev): bump types-tabulate from 0.9.0.1 to 0.9.0.3
|
2023-08-01 16:33:42 +02:00 |
|
Willi Ballenthin
|
f00e7426c5
|
Merge pull request #1667 from mandiant/dependabot/pip/types-requests-2.31.0.2
build(deps-dev): bump types-requests from 2.31.0.1 to 2.31.0.2
|
2023-08-01 16:33:12 +02:00 |
|
Willi Ballenthin
|
3f29c61038
|
Merge branch 'master' into dependabot/pip/types-requests-2.31.0.2
|
2023-08-01 16:33:04 +02:00 |
|
Willi Ballenthin
|
647ce67f7e
|
Merge pull request #1666 from mandiant/dependabot/pip/types-protobuf-4.23.0.2
build(deps-dev): bump types-protobuf from 4.23.0.1 to 4.23.0.2
|
2023-08-01 16:32:29 +02:00 |
|
Willi Ballenthin
|
224923b8bd
|
Merge pull request #1665 from mandiant/dependabot/pip/pyyaml-6.0.1
build(deps-dev): bump pyyaml from 6.0 to 6.0.1
|
2023-08-01 16:31:41 +02:00 |
|
Willi Ballenthin
|
8a08a93b1c
|
Merge branch 'master' into dependabot/pip/pyyaml-6.0.1
|
2023-08-01 16:29:15 +02:00 |
|
Capa Bot
|
ed98bb3a57
|
Sync capa rules submodule
|
2023-08-01 11:21:32 +00:00 |
|
Capa Bot
|
d12185d851
|
Sync capa-testfiles submodule
|
2023-08-01 11:21:02 +00:00 |
|
Capa Bot
|
5f8280eb09
|
Sync capa rules submodule
|
2023-08-01 11:16:09 +00:00 |
|
Yacine Elhamer
|
462024ad03
|
update tests to explicitely specify scopes
|
2023-08-01 07:41:47 +01:00 |
|
Yacine Elhamer
|
f0d09899a1
|
rules/__init__.py: invalidate rules with no scopes field
|
2023-08-01 07:19:11 +01:00 |
|
Aayush Goel
|
30abe40999
|
Merge branch 'mandiant:master' into Aayush-Goel-04/Issue#1607
|
2023-07-28 17:50:20 +05:30 |
|
Yacine Elhamer
|
b8212b3da7
|
main.py: replace | operator with Optional
|
2023-07-27 16:00:52 +01:00 |
|
Yacine Elhamer
|
3d812edc4d
|
use weakrefs for Scopes instantiation; fix test_rules()
|
2023-07-27 15:52:39 +01:00 |
|
Yacine Elhamer
|
2efb7f2975
|
fix flake8 issues
|
2023-07-27 15:10:01 +01:00 |
|
Yacine Elhamer
|
44c5e96cf0
|
RuleSet: remove irrelevant rules after dependecies have been checked
|
2023-07-27 12:44:07 +01:00 |
|
Yacine Elhamer
|
97c878db22
|
update CHANGELOG
|
2023-07-27 10:33:34 +01:00 |
|
Yacine Elhamer
|
16e32f8441
|
add tests
|
2023-07-27 10:31:45 +01:00 |
|
Yacine Elhamer
|
d6aced5ec7
|
RulSet: add flavor-based rule filtering
|
2023-07-27 10:24:08 +01:00 |
|
Yacine Elhamer
|
b843382065
|
rules/__init__.py: update Scopes class
|
2023-07-26 17:20:51 +01:00 |
|
Willi Ballenthin
|
dd53349aea
|
Merge pull request #1669 from xusheng6/master
|
2023-07-26 08:35:54 +02:00 |
|
Willi Ballenthin
|
d598faf145
|
Merge pull request #1664 from mandiant/dependabot/pip/ruff-0.0.280
|
2023-07-24 17:27:01 +02:00 |
|
dependabot[bot]
|
c265b1ca96
|
build(deps-dev): bump types-tabulate from 0.9.0.1 to 0.9.0.3
Bumps [types-tabulate](https://github.com/python/typeshed) from 0.9.0.1 to 0.9.0.3.
- [Commits](https://github.com/python/typeshed/commits)
---
updated-dependencies:
- dependency-name: types-tabulate
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2023-07-24 14:15:59 +00:00 |
|
dependabot[bot]
|
b554eaf563
|
build(deps-dev): bump types-requests from 2.31.0.1 to 2.31.0.2
Bumps [types-requests](https://github.com/python/typeshed) from 2.31.0.1 to 2.31.0.2.
- [Commits](https://github.com/python/typeshed/commits)
---
updated-dependencies:
- dependency-name: types-requests
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2023-07-24 14:15:55 +00:00 |
|
dependabot[bot]
|
3d51b84bd1
|
build(deps-dev): bump types-protobuf from 4.23.0.1 to 4.23.0.2
Bumps [types-protobuf](https://github.com/python/typeshed) from 4.23.0.1 to 4.23.0.2.
- [Commits](https://github.com/python/typeshed/commits)
---
updated-dependencies:
- dependency-name: types-protobuf
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2023-07-24 14:15:50 +00:00 |
|