Skip to content

Releases: Neo23x0/Loki

LOKI version 0.45.0

d6a4496
Compare
Choose a tag to compare

LOKI version 0.44.2

575902f
Compare
Choose a tag to compare
  • fix: comparison issue
  • fix: custom IOC initialisation issue
  • fix: allow different python version

LOKI version 0.44.1

a9f99cd
Compare
Choose a tag to compare
  • workaround for "owner" field supported in THOR only

LOKI version 0.44.0

e22c79b
Compare
Choose a tag to compare
  • new command line flags --allhds and --alldrives allow scanning all local hard drives or all drives in general including removable drives and network drives
  • You can use --force to force scan a directory that has been excluded by default (e.g. /dev, /media, /mnt etc.)
  • The usage description in the README has been updated

LOKI version 0.43.0

Compare
Choose a tag to compare
  • feat: rule author output to comply with DRL 1.1 (new signature-base license)

Screenshot 2021-08-23 at 11 59 15

LOKI version 0.42.3

Compare
Choose a tag to compare
  • refactor: making the vulnerability check optional

LOKI version 0.42.2

Compare
Choose a tag to compare
LOKI version 0.42.2 Pre-release
Pre-release
  • trying to fix unicode decode issues for some users

LOKI version 0.42.1

Compare
Choose a tag to compare
  • docs: better description of Hive Permission bug
  • fix: typos in some words

LOKI version 0.42.0

Compare
Choose a tag to compare
  • vulnerability check: local SAM database readable by every user

Screenshot 2021-07-20 at 14 35 55

LOKI version 0.41.2

Compare
Choose a tag to compare
  • fix: multiple Cobalt Strike rule matches on a single process could cause a false negative message saying that LOKI shows "too many matches on process memory" and prints a "WARNING" level message that states "most likely a false positive" - we've increased the threshold from 3 to 5 different rules #180