Skip to content

Actions: mandiant/capa-rules

Actions

Update rules number badge and sync rules submodule in capa

Actions

Loading...
Loading

Show workflow options

Create status badge

Loading
85 workflow runs
85 workflow runs

Filter by Event

Filter by Status

Filter by Branch

Filter by Actor

Split .NET features from windows file & process rules (#1130)
Update rules number badge and sync rules submodule in capa #712: Commit 03a20f6 pushed by mike-hunhoff
28s master
broaden ITaskService scheduled-task detection for .NET TaskService us…
Update rules number badge and sync rules submodule in capa #711: Commit 3ce071c pushed by mike-hunhoff
23s master
Add get HTTP Query date (#1128)
Update rules number badge and sync rules submodule in capa #710: Commit 5c346a3 pushed by mike-hunhoff
22s master
Merge pull request #1129 from EclipseAditya/fix/escape-plus-in-base64…
Update rules number badge and sync rules submodule in capa #709: Commit cd272f5 pushed by mr-tz
25s master
Merge pull request #1124 from CosmoWorker/scexe-create
Update rules number badge and sync rules submodule in capa #708: Commit 35498e9 pushed by mr-tz
25s master
Add new rule persist-via-shellserviceobjectdelayload-registry-key.yml…
Update rules number badge and sync rules submodule in capa #707: Commit 5da6426 pushed by mike-hunhoff
23s master
Powershell expression (#1118)
Update rules number badge and sync rules submodule in capa #706: Commit 9609e19 pushed by mike-hunhoff
27s master
feat(targeting): add cloud and container collection/interaction rules…
Update rules number badge and sync rules submodule in capa #705: Commit f0292fc pushed by mike-hunhoff
39s master
Merge pull request #1121 from mandiant/lsc-1771433323.1682847
Update rules number badge and sync rules submodule in capa #704: Commit 2e72aa5 pushed by mr-tz
22s master
Refine Speck detection using variant-specific rotation constants (#1115)
Update rules number badge and sync rules submodule in capa #703: Commit 2a55a30 pushed by mike-hunhoff
24s master
Flexible version of send HTTP request (#1110)
Update rules number badge and sync rules submodule in capa #702: Commit 7f70ec1 pushed by mike-hunhoff
18s master
Fix: False positive in UDP socket (#1111)
Update rules number badge and sync rules submodule in capa #701: Commit 94e855b pushed by mike-hunhoff
22s master
Merge pull request #1107 from mandiant/anti-llm-anthropic
Update rules number badge and sync rules submodule in capa #700: Commit 98c1e9d pushed by mr-tz
27s master
Fix false positive in send HTTP request (#1099)
Update rules number badge and sync rules submodule in capa #699: Commit 8caf489 pushed by mike-hunhoff
24s master
add encrypt-data-using-hc-256 (#1097)
Update rules number badge and sync rules submodule in capa #698: Commit 6a0d506 pushed by mike-hunhoff
20s master
Add RtlRegisterWait API to shellcode exec callback (#1094)
Update rules number badge and sync rules submodule in capa #697: Commit a4411ed pushed by mike-hunhoff
24s master
Add Thread Pool injection techniques (#1087)
Update rules number badge and sync rules submodule in capa #696: Commit 6120dfb pushed by mike-hunhoff
24s master
Loosen AFD driver usage detection (#1086)
Update rules number badge and sync rules submodule in capa #695: Commit fb3737b pushed by mr-tz
24s master
adding/updating rules based on recent samples (#1085)
Update rules number badge and sync rules submodule in capa #694: Commit 3b42582 pushed by mike-hunhoff
26s master
updated broken link (#1045)
Update rules number badge and sync rules submodule in capa #693: Commit b0b486f pushed by mr-tz
21s master
dotnet: adding new rules based on recent samples (#1082)
Update rules number badge and sync rules submodule in capa #692: Commit 7a52b6f pushed by mr-tz
20s master
feat: log keystrokes via rawinput (#1078)
Update rules number badge and sync rules submodule in capa #691: Commit 9e4cc28 pushed by mike-hunhoff
30s master
Merge pull request #1079 from zeze-zeze/zeze/feat/DirectInput
Update rules number badge and sync rules submodule in capa #690: Commit 14dcc55 pushed by mr-tz
23s master
Add new rule use-io_uring-io-interface-on-linux.yml (#1080)
Update rules number badge and sync rules submodule in capa #689: Commit 7ae786c pushed by mike-hunhoff
30s master
terminate process with RestartMgr.RmShutdown (#1077)
Update rules number badge and sync rules submodule in capa #688: Commit fa246a4 pushed by mike-hunhoff
30s master