Capa Bot
|
a46d7b3262
|
Sync capa-testfiles submodule
|
2022-12-12 12:18:01 +00:00 |
|
mr-tz
|
97f633312f
|
skip smda tests until we remove the backend
|
2022-12-07 16:44:52 +01:00 |
|
Willi Ballenthin
|
1f091a4ccd
|
tests: add tests demonstrating vverbose feature rendering
|
2022-12-07 12:58:10 +00:00 |
|
Capa Bot
|
0f99592903
|
Sync capa-testfiles submodule
|
2022-11-08 19:58:11 +00:00 |
|
Mike Hunhoff
|
20c7949be3
|
dotnet: emit features from newobj instruction (#1186)
|
2022-10-13 08:35:29 -06:00 |
|
Capa Bot
|
87455ed6dd
|
Sync capa-testfiles submodule
|
2022-09-20 19:34:29 +00:00 |
|
Mike Hunhoff
|
e1735f0a5e
|
update pydantic models to guarantee type coercion (#1176)
* add CompoundStatement to fix Pydantic typing bug
* explorer: fix #1151
* explorer: support rendering operand number/offset
|
2022-09-20 08:38:19 -06:00 |
|
Capa Bot
|
8521f85742
|
Sync capa-testfiles submodule
|
2022-09-19 14:26:32 +00:00 |
|
Mike Hunhoff
|
3c1cd67f60
|
dotnet: support property feature extraction (#1168)
|
2022-09-09 12:09:41 -06:00 |
|
Moritz
|
2441c18a85
|
fix: use int instead of Token to decouple extractor and features (#1158)
|
2022-09-08 11:09:17 -06:00 |
|
Moritz
|
3976e5858d
|
feat: verify rule metadata format on load (#1160)
|
2022-09-08 10:56:59 -06:00 |
|
Capa Bot
|
cac041b869
|
Sync capa-testfiles submodule
|
2022-08-24 10:47:31 +00:00 |
|
Capa Bot
|
f4171c32cf
|
Sync capa-testfiles submodule
|
2022-08-15 08:31:20 +00:00 |
|
Capa Bot
|
5823d421fd
|
Sync capa-testfiles submodule
|
2022-08-01 20:50:09 +00:00 |
|
Capa Bot
|
045a64496e
|
Sync capa-testfiles submodule
|
2022-08-01 20:36:11 +00:00 |
|
Capa Bot
|
b8905e3e48
|
Sync capa-testfiles submodule
|
2022-08-01 20:35:55 +00:00 |
|
Capa Bot
|
7c6f27c6d7
|
Sync capa-testfiles submodule
|
2022-08-01 20:35:14 +00:00 |
|
Capa Bot
|
995b144f0b
|
Sync capa-testfiles submodule
|
2022-08-01 20:34:46 +00:00 |
|
Capa Bot
|
ba93803d3f
|
Sync capa-testfiles submodule
|
2022-08-01 20:30:55 +00:00 |
|
Capa Bot
|
6764830f2d
|
Sync capa-testfiles submodule
|
2022-07-08 18:59:42 +00:00 |
|
Capa Bot
|
9015761d4d
|
Sync capa-testfiles submodule
|
2022-06-30 15:16:42 +00:00 |
|
Capa Bot
|
7387c56af9
|
Sync capa-testfiles submodule
|
2022-06-29 17:47:36 +00:00 |
|
Willi Ballenthin
|
91818a116d
|
scripts/capa_as_library: use new ResultDocument
closes #1071
|
2022-06-28 15:53:37 -06:00 |
|
Moritz Raabe
|
a7c4761fef
|
isort, black
|
2022-06-28 15:53:10 +02:00 |
|
Moritz Raabe
|
e2156c3854
|
refactor: parametrize test
|
2022-06-28 15:49:21 +02:00 |
|
Willi Ballenthin
|
a453258a51
|
tests: fix render test for MBC
|
2022-06-20 14:25:18 -06:00 |
|
Willi Ballenthin
|
246ef58e7b
|
tests: fix render test for ATT&CK metadata
|
2022-06-20 14:24:01 -06:00 |
|
William Ballenthin
|
c417b5dd79
|
merge master
|
2022-06-14 17:05:46 -06:00 |
|
Willi Ballenthin
|
3103307601
|
tests: fix reference error
|
2022-06-10 14:58:26 -06:00 |
|
Capa Bot
|
c653dd7e72
|
Sync capa-testfiles submodule
|
2022-06-10 20:48:49 +00:00 |
|
Willi Ballenthin
|
1c771da848
|
pep8
|
2022-06-10 14:47:23 -06:00 |
|
William Ballenthin
|
c3418fddb5
|
tests: json: fix address representation
|
2022-06-08 13:29:04 -06:00 |
|
William Ballenthin
|
faf414e3d8
|
tests: add more dotnet tests
|
2022-06-08 13:28:53 -06:00 |
|
Willi Ballenthin
|
0987141970
|
tests: add tests demonstrating rending of .NET samples
|
2022-06-06 15:13:20 -06:00 |
|
Willi Ballenthin
|
c73db051c1
|
fixtures: add path to extractors
|
2022-06-06 15:13:11 -06:00 |
|
Willi Ballenthin
|
1a290a38c4
|
Merge branch 'master' into feature-981
|
2022-06-06 14:07:51 -06:00 |
|
Moritz
|
d8e68255a0
|
Merge pull request #1044 from mandiant/fix/rules-meta-authors
fix!: authors instead of author
|
2022-06-01 14:12:31 +02:00 |
|
Capa Bot
|
781ec74310
|
Sync capa-testfiles submodule
|
2022-06-01 12:12:01 +00:00 |
|
Moritz Raabe
|
1df60186f0
|
fix!: authors instead of author
|
2022-05-31 23:05:13 +02:00 |
|
Mike Hunhoff
|
3514d5c05c
|
dotnet: support file/function scope class and namespace features (#1030)
|
2022-05-26 11:19:31 -06:00 |
|
Willi Ballenthin
|
3879e33cce
|
freeze: model each features separately
|
2022-05-25 17:12:02 -06:00 |
|
Willi Ballenthin
|
6b633efdba
|
freeze: fix schema to support overlapping functions
|
2022-05-25 15:28:02 -06:00 |
|
Willi Ballenthin
|
adb425aeb3
|
freeze: use pydantic for (de)serialization
also, move null extractor to its own namespace
|
2022-05-25 15:09:31 -06:00 |
|
Willi Ballenthin
|
b35fe6cdb2
|
json, render: work with and serialize addresses
|
2022-05-24 13:52:56 -06:00 |
|
Willi Ballenthin
|
d728869690
|
freeze: mypy and pep8
|
2022-05-24 13:52:40 -06:00 |
|
Willi Ballenthin
|
6b6dd70110
|
freeze: use address abstraction
|
2022-05-24 12:30:06 -06:00 |
|
Willi Ballenthin
|
314ad4ea4d
|
Merge pull request #1028 from mandiant/fix-988
elf: better detect Linux OS
|
2022-05-23 11:29:13 -06:00 |
|
Moritz Raabe
|
b2853cc56b
|
feat: update dnfile tests and extractor
|
2022-05-12 18:37:02 +02:00 |
|
Moritz Raabe
|
716a73dfb4
|
feat: add handles and type annotations
|
2022-05-12 15:42:25 +02:00 |
|
Capa Bot
|
cded1d3125
|
Sync capa-testfiles submodule
|
2022-05-12 06:35:04 +00:00 |
|