Willi Ballenthin
eb20724d78
Merge branch 'master' into wb-proto
2023-03-22 09:46:03 +01:00
mr-tz
73ac83bd06
reformat changelog
2023-03-20 16:58:06 +01:00
Capa Bot
201330295c
Sync capa rules submodule
2023-03-14 16:25:56 +00:00
Capa Bot
4fd6f17ced
Sync capa rules submodule
2023-03-14 07:34:15 +00:00
Mike Hunhoff
95f23dafe5
Update CHANGELOG.md
2023-03-06 08:55:32 -07:00
Mike Hunhoff
02dc42154b
Update CHANGELOG.md
...
Co-authored-by: Willi Ballenthin <willi.ballenthin@gmail.com >
2023-03-06 08:53:57 -07:00
Mike Hunhoff
14c18727db
update CHANGELOG
2023-03-03 09:55:45 -07:00
Mike Hunhoff
9f3428e1c3
explorer: fix plugin exception when loaded under idat ( #1341 )
2023-03-02 13:42:43 -07:00
Moritz
52de09a032
Fix byte/string extraction and unit tests ( #1339 )
...
* Fix wrong expected results on string and bytes tests. Fix https://github.com/mandiant/capa/issues/1336
* Fix IDA insn/byte extractor checks wrong address. Fix https://github.com/mandiant/capa/issues/1327
* fix vivisect string check and tests
---------
Co-authored-by: Xusheng <xusheng@vector35.com >
2023-03-02 10:33:14 +01:00
Capa Bot
be6bb879f3
Sync capa rules submodule
2023-03-01 15:50:20 +00:00
Capa Bot
bd7cf8cdd1
Sync capa rules submodule
2023-02-28 10:41:07 +00:00
Mike Hunhoff
a07ca443f0
update OS to match OS_ANY for all supported OSes ( #1324 )
2023-02-24 07:51:40 -07:00
Capa Bot
17f70bb87c
Sync capa rules submodule
2023-02-23 08:47:24 +00:00
Capa Bot
02f8e57e66
Sync capa rules submodule
2023-02-21 10:46:20 +00:00
Capa Bot
5e600d02a8
Sync capa rules submodule
2023-02-20 08:05:09 +00:00
Capa Bot
6e5302e5ec
Sync capa rules submodule
2023-02-15 16:46:14 +00:00
Capa Bot
4b472c8564
Sync capa rules submodule
2023-02-15 15:16:41 +00:00
Capa Bot
4ccf6f0e69
Sync capa rules submodule
2023-02-15 10:57:23 +00:00
mr-tz
0d14c168a4
fix loop detection corner case
2023-02-15 11:41:54 +01:00
Willi Ballenthin
50750a59d9
Merge branch 'master' of personal.github.com:mandiant/capa into wb-proto
2023-02-14 13:04:28 +01:00
Willi Ballenthin
e41afbee58
changelog
2023-02-14 13:04:05 +01:00
Capa Bot
4ea3475d2b
Sync capa rules submodule
2023-02-13 09:50:39 +00:00
Capa Bot
15a276e3a5
Sync capa rules submodule
2023-02-13 09:47:05 +00:00
Capa Bot
f6e58ea212
Sync capa rules submodule
2023-02-10 10:08:30 +00:00
Moritz
c2346f41cb
update to v5.0.0 ( #1308 )
2023-02-08 21:34:45 +01:00
Capa Bot
3dfb7beb6b
Sync capa rules submodule
2023-02-07 15:56:56 +00:00
Capa Bot
b34864c55e
Sync capa rules submodule
2023-02-07 14:49:39 +00:00
Capa Bot
26655315c7
Sync capa rules submodule
2023-02-07 14:48:39 +00:00
Capa Bot
cbac0e0d3b
Sync capa rules submodule
2023-02-07 09:59:16 +00:00
Capa Bot
6070479e0a
Sync capa rules submodule
2023-02-06 17:12:33 +00:00
Moritz
fd70dc24df
feat: store results to database and UI updates ( #1292 )
...
* feat: store results to database and UI updates
* feat: update result caching and UI
* use system rules cache and improve result cache validation
* improve buttons and status messages
* improve error messaging for invalid caches
---------
Co-authored-by: Mike Hunhoff <mike.hunhoff@gmail.com >
2023-02-06 16:37:19 +01:00
Mike Hunhoff
7ea166f98c
explorer: fix UnboundLocal errors and improve render match by function ( #1302 )
2023-02-02 12:33:30 -07:00
Capa Bot
faceca6fec
Sync capa rules submodule
2023-02-02 08:12:15 +00:00
Capa Bot
6589b2044b
Sync capa rules submodule
2023-02-01 15:29:00 +00:00
Capa Bot
6591b574a0
Sync capa rules submodule
2023-02-01 14:13:20 +00:00
Moritz
ca91051d1a
Fix string length >= 4 and remove bytes/string overlaps ( #1298 )
...
* fix min string length >= 4
* feat: don't extract bytes for strings
2023-02-01 14:53:16 +01:00
Moritz
b5c6cdeaa1
Update ATT&CK and MBC lint data ( #1297 )
...
* sort by ID
* update ATT&CK/MBC lint data via script
2023-02-01 09:56:10 +01:00
Capa Bot
bbc0afd083
Sync capa rules submodule
2023-01-27 08:56:49 +00:00
Capa Bot
8857f92f7c
Sync capa rules submodule
2023-01-26 08:15:31 +00:00
Willi Ballenthin
70f568b1cc
Merge pull request #1291 from mandiant/rules-cache
...
cache rule set across invocations of capa
2023-01-25 17:52:34 +01:00
Capa Bot
a58e9e4df3
Sync capa rules submodule
2023-01-23 13:53:42 +00:00
Willi Ballenthin
e644775ad1
changelog
2023-01-20 14:52:47 +01:00
Capa Bot
49c18bd83d
Sync capa rules submodule
2023-01-20 12:15:23 +00:00
Capa Bot
67717761bd
Sync capa rules submodule
2023-01-20 12:15:02 +00:00
Moritz
fa0ddba436
add format to global features and code refactors ( #1284 )
...
* refactor: get format handling
* add format to global features
2023-01-19 13:31:00 +01:00
Capa Bot
26662e99de
Sync capa rules submodule
2023-01-19 12:11:19 +00:00
Willi Ballenthin
5513d4ca43
viv: insn: string: handle viv bug around substrings ( #1273 )
...
* viv: insn: string: handle viv bug around substrings
closes #1271
* use minimum string length 4
* update overlapping string test and fixup vivisect elf analysis missing function
Co-authored-by: Moritz <mr-tz@users.noreply.github.com >
2023-01-19 13:02:53 +01:00
Moritz
b8de9625ee
fix: don't extract invalid calls from features ( #1285 )
2023-01-19 11:56:13 +01:00
Capa Bot
35e6df6f6b
Sync capa rules submodule
2023-01-18 15:10:43 +00:00
Capa Bot
2ab057a24d
Sync capa rules submodule
2023-01-12 13:15:35 +00:00