Hello guys,
I've come across this tool that FireEye's FLARE team is using to detect the capabilities of an executable to know if it's malicious.
Sounded pretty cool, and it's open source.
Works pretty well, interesting for some research and to check some files for your own environment's safety.
Check it out.
github.com
www.fireeye.com
Hope you find it useful.
Best.
I've come across this tool that FireEye's FLARE team is using to detect the capabilities of an executable to know if it's malicious.
Sounded pretty cool, and it's open source.
Works pretty well, interesting for some research and to check some files for your own environment's safety.
Check it out.
GitHub - mandiant/capa: The FLARE team's open-source tool to identify capabilities in executable files.
The FLARE team's open-source tool to identify capabilities in executable files. - mandiant/capa
capa: Automatically Identify Malware Capabilities | Mandiant
www.fireeye.com
Hope you find it useful.
Best.