Willi Ballenthin
|
eb12ec43f0
|
mypy
|
2023-11-06 09:52:00 +00:00 |
|
Willi Ballenthin
|
f7c72cd1c3
|
vverbose: don't repeat rendered calls when in call scope
|
2023-11-06 09:52:00 +00:00 |
|
Willi Ballenthin
|
0da614aa4f
|
vverbose: dynamic: show rendered matching API call
|
2023-11-06 09:52:00 +00:00 |
|
Willi Ballenthin
|
9c81ccf88a
|
vverbose: make missing names an error
|
2023-11-06 09:52:00 +00:00 |
|
Willi Ballenthin
|
c141f7ec6e
|
verbose: better render scopes
|
2023-11-06 09:52:00 +00:00 |
|
Willi Ballenthin
|
274a710bb1
|
report: better compute dynamic layout
|
2023-11-06 09:52:00 +00:00 |
|
Willi Ballenthin
|
4a7e488e4c
|
Update capa/render/vverbose.py
Co-authored-by: Moritz <mr-tz@users.noreply.github.com>
|
2023-11-01 12:19:13 +01:00 |
|
Willi Ballenthin
|
9e6919f33c
|
layout: capture call names
so that they can be rendered to output
|
2023-10-20 14:21:13 +00:00 |
|
Willi Ballenthin
|
393b0e63f0
|
layout: capture process name
|
2023-10-20 12:39:28 +00:00 |
|
Willi Ballenthin
|
ee4f02908c
|
layout: capture process name
|
2023-10-20 12:38:35 +00:00 |
|
Willi Ballenthin
|
788251ba2b
|
vverbose: render scope for humans
|
2023-10-20 11:37:42 +00:00 |
|
Willi Ballenthin
|
62d4b008c5
|
Merge pull request #1822 from mandiant/fix/dynamic-freeze
update freeze for dynamic
|
2023-10-20 13:16:48 +02:00 |
|
Willi Ballenthin
|
fc4618e234
|
Merge branch 'dynamic-feature-extraction' into fix/dynamic-freeze
|
2023-10-20 09:16:07 +02:00 |
|
Willi Ballenthin
|
1143f2ba56
|
changelog
|
2023-10-20 07:11:42 +00:00 |
|
Willi Ballenthin
|
10dc4b92b1
|
freeze: update freeze format v3
|
2023-10-20 06:59:53 +00:00 |
|
Willi Ballenthin
|
bfecf414fb
|
freeze: add dynamic tests
|
2023-10-20 06:59:34 +00:00 |
|
Willi Ballenthin
|
0231ceef87
|
null extractor: fix typings
|
2023-10-20 06:59:16 +00:00 |
|
Moritz
|
b8b55f4e19
|
identify potential JSON object data start (#1819)
* identify potential JSON object data start
|
2023-10-19 17:17:57 +02:00 |
|
Willi Ballenthin
|
d42829d7e7
|
Merge pull request #1765 from mandiant/fix/dynamic-proto
protobuf: add dynamic support
|
2023-10-19 13:37:45 +02:00 |
|
Willi Ballenthin
|
c724a4b311
|
ci: only run BN and Ghidra tests after others complete
these are much less likely to fail because they're
changed less often, so don't run them until we know
other tests also pass.
|
2023-10-19 11:35:42 +00:00 |
|
Willi Ballenthin
|
84e22b187d
|
doc
|
2023-10-19 11:29:30 +00:00 |
|
Willi Ballenthin
|
b6a0d6e1f3
|
pre-commit: fix stages
|
2023-10-19 11:26:22 +00:00 |
|
Willi Ballenthin
|
1cb3ca61cd
|
pre-commit: only run fast checks during commit
|
2023-10-19 10:35:57 +00:00 |
|
Willi Ballenthin
|
288313a300
|
changelog
|
2023-10-19 10:28:37 +00:00 |
|
Willi Ballenthin
|
2cc6a37713
|
ci: run fast tests before the full suite
|
2023-10-19 10:23:03 +00:00 |
|
Willi Ballenthin
|
fbeb33a91f
|
Merge branch 'dynamic-feature-extraction' into fix/dynamic-proto
|
2023-10-19 10:05:26 +00:00 |
|
Willi Ballenthin
|
3519125e03
|
tests: fix COM tests with dynamic scope
|
2023-10-19 10:04:26 +00:00 |
|
Willi Ballenthin
|
98360328f9
|
proto: fix serialization of call address
|
2023-10-19 09:59:18 +00:00 |
|
Willi Ballenthin
|
3d4facd9a3
|
Merge branch 'dynamic-feature-extraction' into fix/dynamic-proto
|
2023-10-19 09:24:37 +00:00 |
|
Willi Ballenthin
|
8b0ba1e656
|
tests: rename freeze tests
|
2023-10-19 09:24:18 +00:00 |
|
Willi Ballenthin
|
7bc3fba7b0
|
Merge branch 'dynamic-feature-extraction' into fix/dynamic-proto
|
2023-10-19 09:20:15 +00:00 |
|
Willi Ballenthin
|
d5e187bc70
|
Merge branch 'master' into dynamic-feature-extraction
|
2023-10-19 09:15:57 +00:00 |
|
Moritz
|
8687c740d5
|
Merge pull request #1817 from mandiant/improve-vv-render
improve vverbose rendering
|
2023-10-19 09:41:31 +02:00 |
|
Yacine
|
9609d63f8a
|
Update tests/test_main.py
Co-authored-by: Moritz <mr-tz@users.noreply.github.com>
|
2023-10-19 08:10:29 +02:00 |
|
Capa Bot
|
772f806eb6
|
Sync capa rules submodule
|
2023-10-18 15:01:37 +00:00 |
|
Willi Ballenthin
|
5eaba611d1
|
Merge pull request #1738 from Aayush-Goel-04/Aayush-Goel-04/Issue#322
add com class/interface features
|
2023-10-18 17:00:39 +02:00 |
|
mr-tz
|
b6f13f3489
|
improve vverbose rendering
|
2023-10-18 13:37:56 +02:00 |
|
Aayush Goel
|
178cfce456
|
Merge branch 'Aayush-Goel-04/Issue#322' of https://github.com/Aayush-Goel-04/capa into Aayush-Goel-04/Issue#322
|
2023-10-18 16:33:37 +05:30 |
|
Aayush Goel
|
94cf53a1e3
|
Update __init__.py
|
2023-10-18 16:33:31 +05:30 |
|
Moritz
|
2cfd45022a
|
improve and fix various dynamic parts (#1809)
* improve and fix various dynamic parts
|
2023-10-18 10:59:41 +02:00 |
|
Aayush Goel
|
26a2d1b4d1
|
Merge branch 'mandiant:master' into Aayush-Goel-04/Issue#322
|
2023-10-17 21:09:07 +05:30 |
|
Aayush Goel
|
6dbd3768ce
|
Update __init__.py
|
2023-10-17 21:04:21 +05:30 |
|
Willi Ballenthin
|
21f9e0736d
|
isort
|
2023-10-17 15:07:34 +00:00 |
|
Aayush Goel
|
7cd5aa1c40
|
Added Enum for comType
|
2023-10-17 20:28:49 +05:30 |
|
Willi Ballenthin
|
55e4fddc51
|
mypy
|
2023-10-17 14:46:33 +00:00 |
|
Willi Ballenthin
|
1aac4a1a69
|
mypy
|
2023-10-17 14:42:58 +00:00 |
|
Willi Ballenthin
|
92daf3a530
|
elffile: fix property access
|
2023-10-17 14:28:52 +00:00 |
|
Willi Ballenthin
|
547502051f
|
dynamic: fix tests
|
2023-10-17 14:27:36 +00:00 |
|
Aayush Goel
|
884b714be2
|
loading com db only once
avoid loading db multiple times by caching it.
|
2023-10-17 19:48:06 +05:30 |
|
Willi Ballenthin
|
7205bc26ef
|
submodule: rules: update
|
2023-10-17 12:28:45 +00:00 |
|