mirror of
https://github.com/mandiant/capa.git
synced 2025-12-12 23:59:48 -08:00
Sync capa rules submodule
This commit is contained in:
@@ -13,7 +13,7 @@ It includes many new rules, including all new techniques introduced in MITRE ATT
|
||||
- main: auto detect shellcode based on file extension #516 @mr-tz
|
||||
- main: more detailed progress bar output when matching functions #562 @mr-tz
|
||||
|
||||
### New Rules (71)
|
||||
### New Rules (72)
|
||||
|
||||
- anti-analysis/packer/amber/packed-with-amber @gormaniac
|
||||
- collection/file-managers/gather-3d-ftp-information @re-fox
|
||||
@@ -85,6 +85,7 @@ It includes many new rules, including all new techniques introduced in MITRE ATT
|
||||
- nursery/connect-to-wmi-namespace-via-wbemlocator michael.hunhoff@fireeye.com
|
||||
- anti-analysis/obfuscation/obfuscated-with-callobfuscator johnk3r
|
||||
- executable/installer/inno-setup/packaged-as-an-inno-setup-installer awillia2@cisco.com
|
||||
- data-manipulation/hashing/djb2/hash-data-using-djb2 awillia2@cisco.com
|
||||
-
|
||||
|
||||
### Bug Fixes
|
||||
|
||||
@@ -2,7 +2,7 @@
|
||||
|
||||
[](https://pypi.org/project/flare-capa)
|
||||
[](https://github.com/fireeye/capa/releases)
|
||||
[](https://github.com/fireeye/capa-rules)
|
||||
[](https://github.com/fireeye/capa-rules)
|
||||
[](https://github.com/fireeye/capa/actions?query=workflow%3ACI+event%3Apush+branch%3Amaster)
|
||||
[](https://github.com/fireeye/capa/releases)
|
||||
[](LICENSE.txt)
|
||||
|
||||
2
rules
2
rules
Submodule rules updated: 4fe630561d...a220532160
Reference in New Issue
Block a user