Commit Graph

  • 153f6cce02 Returning stix2 file name with iocs as well Nex 2022-02-02 14:57:32 +01:00
  • 47f9a0104c Added a break for speed Nex 2022-02-02 14:54:40 +01:00
  • bdad23feee Refactored indicators to support multiple malware/collections per stix2 file Nex 2022-02-02 14:53:26 +01:00
  • 5416b66915 Add CI and downloads page Donncha Ó Cearbhaill 2022-02-02 12:45:06 +01:00
  • e2936c3d33 Added new check-bugreport command and modules Nex 2022-02-02 00:09:53 +01:00
  • 3483ca1584 Package dumpsys parsing as static method Nex 2022-02-01 21:45:26 +01:00
  • 7b107edf1f Bumped version v1.4.11 Nex 2022-02-01 17:54:01 +01:00
  • b97ce7651a Fixed missing checks for indicators instance (ref: #245) Nex 2022-02-01 17:48:19 +01:00
  • 52a204cab6 Obtaining permissions for installed packages Nex 2022-02-01 15:33:19 +01:00
  • 1b335fda1d Renamed function argument to more descriptive Nex 2022-02-01 15:07:43 +01:00
  • 2ad175eae2 Renamed package to package_name for consistency Nex 2022-02-01 14:27:00 +01:00
  • 2d00dca5bd Bumped version v1.4.10 Nex 2022-02-01 12:46:31 +01:00
  • c8e50eb958 Merge pull request #244 from dangaffey/patch-1 Nex 2022-02-01 11:54:04 +01:00
  • 1f049fc8ba Update docker.md Dan Gaffey 2022-01-31 20:22:54 -05:00
  • 434738a306 Better regexp formatting Nex 2022-01-31 13:05:03 +01:00
  • 06cd640c5e Using static methods Nex 2022-01-31 12:58:33 +01:00
  • fb8a7ca104 Enforce consistency in Android modules Nex 2022-01-31 11:30:49 +01:00
  • 8d15ff58dd Renamed matched field name to singular Nex 2022-01-30 20:29:09 +01:00
  • eb5f07a75d Updated copyright notice Nex 2022-01-30 20:15:01 +01:00
  • ececf1a6b2 Added module to extract db queries Nex 2022-01-30 19:43:09 +01:00
  • 851cd52602 Ordering and clean-up Nex 2022-01-30 16:41:32 +01:00
  • 8db04fc991 Added module to parse battery daily stats package updates Nex 2022-01-30 16:02:24 +01:00
  • 3d0ba56e1f Fixed parsing of wake events Nex 2022-01-30 15:20:03 +01:00
  • c48a4e8f50 Fixed variable name Nex 2022-01-30 04:12:19 +01:00
  • 001c2998a5 Removed unnecessary newlines Nex 2022-01-30 04:11:46 +01:00
  • 5e7c5727af Added check for indicators to dumpsys modules Nex 2022-01-30 04:08:48 +01:00
  • 883fbaeb88 Parsing records from accessibility and battery history Nex 2022-01-30 03:44:41 +01:00
  • 6f0012cede Removed modules which are only duplicated outputs from dumpsys full Nex 2022-01-30 03:39:26 +01:00
  • 458e80ccbb Adding module to process battery history Nex 2022-01-30 03:34:16 +01:00
  • c8185fdbd8 Small code clean-ups Nex 2022-01-29 15:13:35 +01:00
  • 67eea3edec Merge pull request #241 from yallxe/main Nex 2022-01-29 14:44:16 +01:00
  • bc86d159b8 Clear 'debugging' things Yallxe 2022-01-29 12:28:22 +01:00
  • 43b1612dfe Set utf-8 as an encoding for open() Yallxe 2022-01-29 12:18:18 +01:00
  • 156f1084f1 Add IDEA to gitignore Yallxe 2022-01-29 12:03:00 +01:00
  • 49e34f6299 Better parsing of dumpsys package and added parsing of Activities too Nex 2022-01-29 03:50:33 +01:00
  • d88a66dd54 Fixed typo Nex 2022-01-29 01:13:52 +01:00
  • d3ed778ae4 Fixed comment stylling Nex 2022-01-29 01:13:29 +01:00
  • 4c3306c272 Separate receivers parsing in DumpsysReceivers tek 2022-01-29 01:06:32 +01:00
  • 1c912f68fe Bumped version v1.4.9 Nex 2022-01-28 22:25:41 +01:00
  • 10a640d3f7 Temporary disabing VirusTotal lookup because of API issues Nex 2022-01-28 22:25:21 +01:00
  • c3acc95e9e Bumped version v1.4.8 Nex 2022-01-28 20:08:14 +01:00
  • 90d05336da Added check for additional outgoing call event Nex 2022-01-28 17:21:28 +01:00
  • 5513e6e9e3 Ordered imports Nex 2022-01-28 16:36:24 +01:00
  • 38116f8405 Catching device not found exception Nex 2022-01-28 15:47:50 +01:00
  • 59b069f006 Added lookups for non-system packages on check-adb too Nex 2022-01-28 12:25:50 +01:00
  • 28e1348aa7 Added check-iocs command to mvt-android Nex 2022-01-27 18:23:19 +01:00
  • 034338d1f4 Added iOS 15.3 Nex 2022-01-27 17:04:48 +01:00
  • 09d5eabf2f Changing check logic for Android settings Nex 2022-01-27 15:24:17 +01:00
  • a425d6c511 Added missing comma and ordered imports Nex 2022-01-27 14:56:02 +01:00
  • f8897a4f8c Added more dangerous settings Nex 2022-01-27 14:54:31 +01:00
  • 86eae68bdb Added Android settings module Nex 2022-01-27 13:33:06 +01:00
  • d2bf348b03 Merge branch 'main' of github.com:mvt-project/mvt Nex 2022-01-27 12:51:14 +01:00
  • 25c6c03075 Added Getprop module and cleaned Files and Packages Android modules Nex 2022-01-27 12:50:37 +01:00
  • cf88740f6a Fixes bugs in SafariBrowserState module and add tests tek 2022-01-26 14:50:34 +01:00
  • eb4810b0ad Fixes bug in parsing of configuration profiles tek 2022-01-25 20:32:27 +01:00
  • cce9159eda Adding indicator to matched results v1.4.7 Nex 2022-01-23 15:01:49 +01:00
  • e1211991aa Bumped version v1.4.6 Nex 2022-01-23 14:17:43 +01:00
  • 8ae9ca328c Added log line at the end to highlight number of detections Nex 2022-01-21 16:50:32 +01:00
  • 0e2eb51732 Fixed checking of indicators in filesystem module Nex 2022-01-21 16:30:34 +01:00
  • b35cd4bc73 Added support for context-aware indicators. This way when a detection is logged, the user can know which STIX2 file was matched by the module Nex 2022-01-21 16:26:58 +01:00
  • 1b4f99a31d Trying to catch missing argument error (ref: #211) Nex 2022-01-21 12:20:22 +01:00
  • e4e1716729 Bumped version v1.4.5 tek 2022-01-20 15:28:42 +01:00
  • 083bc12351 Merge branch 'feature/check-file-path' tek 2022-01-20 15:19:37 +01:00
  • cf6d392460 Adds more details on the download-iocs command tek 2022-01-20 13:29:50 +01:00
  • 95205d8e17 Adds indicators check to iOS TCC module tek 2022-01-18 17:12:20 +01:00
  • 1460828c30 Uniforming style in test units v1.4.4 Nex 2022-01-18 16:33:13 +01:00
  • fa84b3f296 Revert "Testing with slightly older version of iOSbackup" Nex 2022-01-18 16:32:22 +01:00
  • e1efaa5467 Testing with slightly older version of iOSbackup Nex 2022-01-18 16:27:14 +01:00
  • 696d42fc6e Disabling tests for 3.7 due to iOSbackup requirements of >= 3.8 Nex 2022-01-18 16:22:29 +01:00
  • a0e1662726 Somehow mysteriously with >= pip doesn't find the version, with == does Nex 2022-01-18 16:16:03 +01:00
  • 51645bdbc0 Adding pip install for deps Nex 2022-01-18 16:10:59 +01:00
  • bb1b108fd7 Cleaning build workflow Nex 2022-01-18 16:09:01 +01:00
  • 92f9dcb8a5 Tring to fix build Nex 2022-01-18 16:08:14 +01:00
  • a6fd5fe1f3 Bumped version Nex 2022-01-18 16:06:14 +01:00
  • 3e0ef20fcd . Nex 2022-01-18 16:05:01 +01:00
  • 01f3acde2e Merge branch 'main' of github.com:mvt-project/mvt Nex 2022-01-18 16:00:52 +01:00
  • b697874f56 Conforming the test files Nex 2022-01-18 16:00:03 +01:00
  • 41d699f457 Add PyTest to Github actions Donncha Ó Cearbhaill 2022-01-18 15:59:16 +01:00
  • 6fcd40f6b6 Fix use of global list instance as self.results variable Donncha Ó Cearbhaill 2022-01-18 15:53:05 +01:00
  • 38bb583a9e Improves management of file path indicators tek 2022-01-18 15:50:31 +01:00
  • 48ec2d8fa8 Merge branch 'main' into tests Donncha Ó Cearbhaill 2022-01-18 15:30:08 +01:00
  • 798805c583 Improves Shortcut output tek 2022-01-18 13:06:35 +01:00
  • 24be9e9570 Use default list of indicators files now that some default ones are automatically loaded Nex 2022-01-14 16:26:14 +01:00
  • adbd95c559 Dots Nex 2022-01-14 02:01:59 +01:00
  • 8a707c288a Bumped version v1.4.3 Nex 2022-01-14 01:53:10 +01:00
  • 4c906ad52e Renamed download iocs function Nex 2022-01-14 01:52:57 +01:00
  • a2f8030cce Added new iOS versions Nex 2022-01-14 01:41:48 +01:00
  • 737007afdb Bumped version v1.4.2 Nex 2022-01-12 16:18:13 +01:00
  • 33efeda90a Added TODO note Nex 2022-01-12 16:10:15 +01:00
  • 146f2ae57d Renaming check function for consistency Nex 2022-01-12 16:02:13 +01:00
  • 11bc916854 Sorted imports Nex 2022-01-11 16:02:44 +01:00
  • 3084876f31 Removing unused imports, fixing conditions, new lines Nex 2022-01-11 16:02:01 +01:00
  • f63cb585b2 Shortened command to download-iocs Nex 2022-01-11 15:59:01 +01:00
  • 637aebcd89 Small cleanup Nex 2022-01-11 15:53:10 +01:00
  • 16a0de3af4 Added new module to highlight installed accessibility services Nex 2022-01-11 15:16:26 +01:00
  • 15fbedccc9 Fixes a minor bug in WebkitResourceLoadStatistics tek 2022-01-10 18:09:31 +01:00
  • e0514b20dd Catches exception in Shortcuts module if the table does not exist tek 2022-01-10 16:58:12 +01:00
  • b2e9f0361b Fix repeated results due to global results[] variable Donncha Ó Cearbhaill 2022-01-07 18:24:24 +01:00
  • e85c70c603 Generate stix2 for each test run Donncha Ó Cearbhaill 2022-01-07 17:51:21 +01:00
  • 3f8dade610 Move backup binary artifact to seperate folder Donncha Ó Cearbhaill 2022-01-07 17:08:46 +01:00