mirror of
https://github.com/pe3zx/my-infosec-awesome.git
synced 2024-09-28 02:05:36 +00:00
Add: fireeye/capa-rules
This commit is contained in:
parent
05285b3e73
commit
ddb6b92b73
@ -80,6 +80,10 @@ This repository is created as an online bookmark for useful links, resources and
|
|||||||
<td><a href="https://github.com/fireeye/capa">fireeye/capa</a></td>
|
<td><a href="https://github.com/fireeye/capa">fireeye/capa</a></td>
|
||||||
<td>capa detects capabilities in executable files. You run it against a PE file or shellcode and it tells you what it thinks the program can do. For example, it might suggest that the file is a backdoor, is capable of installing services, or relies on HTTP to communicate.</td>
|
<td>capa detects capabilities in executable files. You run it against a PE file or shellcode and it tells you what it thinks the program can do. For example, it might suggest that the file is a backdoor, is capable of installing services, or relies on HTTP to communicate.</td>
|
||||||
</tr>
|
</tr>
|
||||||
|
<tr>
|
||||||
|
<td><a href="https://github.com/fireeye/capa-rules">fireeye/capa-rules</a></td>
|
||||||
|
<td>Standard collection of rules for capa: the tool for enumerating the capabilities of programs</td>
|
||||||
|
</tr>
|
||||||
<tr>
|
<tr>
|
||||||
<td><a href="https://github.com/jymcheong/AutoTTP">jymchoeng/AutoTTP</a></td>
|
<td><a href="https://github.com/jymcheong/AutoTTP">jymchoeng/AutoTTP</a></td>
|
||||||
<td>Automated Tactics Techniques & Procedures</td>
|
<td>Automated Tactics Techniques & Procedures</td>
|
||||||
|
Loading…
Reference in New Issue
Block a user