capa-rules
by mandiant
Standard collection of rules for capa: the tool for enumerating the capabilities of programs
AI summary
Capabilities detector
A standard collection of rules for identifying capabilities in programs
- stars
- 549
- forks
- 164
- watching
- 23
Similar projects
Found by comparing what the projects do, not just their names.
mandiant/capa4.9K
Malware analyzer
An executable file analysis tool that identifies capabilities and potential malicious behaviors.
Threat detector
A PowerShell module designed to detect potential security threats in Azure AD environments
Face detector
An app for on-device face detection using machine learning
CAN framework
A comprehensive software framework for designing, simulating, analyzing and interacting with CAN bus networks
CAN analyzer
A tool for hacking and analyzing car CAN bus systems
Malware detector ruleset
A centralized repository of Yara rules for detecting malware and other malicious activities.
API Detector
Detects uses of legacy Java APIs in source code to recommend modern alternatives.
Mute detector
A plugin to detect if a device's mute switch is enabled or disabled
NMAP scanner detector
Customized Suricata detection rules to identify NMAP scan types
Device detector
A system for detecting mobile devices in user agent strings using patterns and regular expressions.
Saliency detector
Provides code and datasets for a saliency object detection method that leverages captioning to improve accuracy
Network anomaly detector
Provides Suricata IDS alert rules for detecting network anomalies
Detection rules
A collection of YARA-L 2.0 sample rules and dashboards for threat detection in Google Security Operations
CAN adapter
An adapter that enables communication between a CAN bus device and a computer via USB.
System scanner
Automates system information gathering after gaining access to a Linux system.