Skip to content

Actions: mandiant/capa-rules

Actions

Update rules number badge and sync rules submodule in capa

Actions

Loading...
Loading

Show workflow options

Create status badge

Loading
78 workflow runs
78 workflow runs

Filter by Event

Filter by Status

Filter by Branch

Filter by Actor

Flexible version of send HTTP request (#1110)
Update rules number badge and sync rules submodule in capa #702: Commit 7f70ec1 pushed by mike-hunhoff
18s master
Fix: False positive in UDP socket (#1111)
Update rules number badge and sync rules submodule in capa #701: Commit 94e855b pushed by mike-hunhoff
22s master
Merge pull request #1107 from mandiant/anti-llm-anthropic
Update rules number badge and sync rules submodule in capa #700: Commit 98c1e9d pushed by mr-tz
27s master
Fix false positive in send HTTP request (#1099)
Update rules number badge and sync rules submodule in capa #699: Commit 8caf489 pushed by mike-hunhoff
24s master
add encrypt-data-using-hc-256 (#1097)
Update rules number badge and sync rules submodule in capa #698: Commit 6a0d506 pushed by mike-hunhoff
20s master
Add RtlRegisterWait API to shellcode exec callback (#1094)
Update rules number badge and sync rules submodule in capa #697: Commit a4411ed pushed by mike-hunhoff
24s master
Add Thread Pool injection techniques (#1087)
Update rules number badge and sync rules submodule in capa #696: Commit 6120dfb pushed by mike-hunhoff
24s master
Loosen AFD driver usage detection (#1086)
Update rules number badge and sync rules submodule in capa #695: Commit fb3737b pushed by mr-tz
24s master
adding/updating rules based on recent samples (#1085)
Update rules number badge and sync rules submodule in capa #694: Commit 3b42582 pushed by mike-hunhoff
26s master
updated broken link (#1045)
Update rules number badge and sync rules submodule in capa #693: Commit b0b486f pushed by mr-tz
21s master
dotnet: adding new rules based on recent samples (#1082)
Update rules number badge and sync rules submodule in capa #692: Commit 7a52b6f pushed by mr-tz
20s master
feat: log keystrokes via rawinput (#1078)
Update rules number badge and sync rules submodule in capa #691: Commit 9e4cc28 pushed by mike-hunhoff
30s master
Merge pull request #1079 from zeze-zeze/zeze/feat/DirectInput
Update rules number badge and sync rules submodule in capa #690: Commit 14dcc55 pushed by mr-tz
23s master
Add new rule use-io_uring-io-interface-on-linux.yml (#1080)
Update rules number badge and sync rules submodule in capa #689: Commit 7ae786c pushed by mike-hunhoff
30s master
terminate process with RestartMgr.RmShutdown (#1077)
Update rules number badge and sync rules submodule in capa #688: Commit fa246a4 pushed by mike-hunhoff
30s master
Add LdrCallEnclave in execute-shellcode-via-windows-callback-function…
Update rules number badge and sync rules submodule in capa #687: Commit 277540a pushed by mike-hunhoff
26s master
Move get-routing-table.yml out of nursery. Add enumerate-tcp-connecti…
Update rules number badge and sync rules submodule in capa #686: Commit 1a065e6 pushed by mike-hunhoff
26s master
Move impersonate user from nursery (#1072)
Update rules number badge and sync rules submodule in capa #685: Commit 5d990ad pushed by mike-hunhoff
23s master
Update enumerate-minifilter-drivers.yml (#1075)
Update rules number badge and sync rules submodule in capa #684: Commit 4026d60 pushed by mike-hunhoff
31s master
Add rules linked-against-funchook.yml and linked-against-plthook.yml …
Update rules number badge and sync rules submodule in capa #683: Commit 19d48ab pushed by mike-hunhoff
26s master
Add rule execute-jscript-via-vsaengine-in-dotnet.yml (#1071)
Update rules number badge and sync rules submodule in capa #682: Commit 13e8622 pushed by mike-hunhoff
24s master
Merge linking/static/hp-socket/linked-against-hp-socket.yml and nurse…
Update rules number badge and sync rules submodule in capa #681: Commit 35b17b6 pushed by mike-hunhoff
31s master
Add rule linked-against-hp-socket.yml (#1069)
Update rules number badge and sync rules submodule in capa #680: Commit 6859d7c pushed by mike-hunhoff
32s master
Add linking/static/grpc/linked-against-grpc.yml (#1068)
Update rules number badge and sync rules submodule in capa #679: Commit 6d6495a pushed by mike-hunhoff
21s master
Add disable-powershell-transcription.yml and access-powershell-lockdo…
Update rules number badge and sync rules submodule in capa #678: Commit 1874535 pushed by mike-hunhoff
20s master