Skip to content

hadooken: Improve shell, python, and powershell dropper detection#455

Merged
egibs merged 14 commits intochainguard-dev:mainfrom
tstromberg:hadooken
Sep 16, 2024
Merged

hadooken: Improve shell, python, and powershell dropper detection#455
egibs merged 14 commits intochainguard-dev:mainfrom
tstromberg:hadooken

Conversation

@tstromberg
Copy link

@tstromberg tstromberg requested a review from egibs September 15, 2024 21:33
@egibs
Copy link
Member

egibs commented Sep 16, 2024

Does this need a test data refresh once #450 merges?

@tstromberg
Copy link
Author

tstromberg commented Sep 16, 2024 via email

tstromberg and others added 12 commits September 16, 2024 09:27
chainguard-dev#459)

Bumps the all group with 1 update: [step-security/harden-runner](https://github.com/step-security/harden-runner).


Updates `step-security/harden-runner` from 2.9.1 to 2.10.1
- [Release notes](https://github.com/step-security/harden-runner/releases)
- [Commits](step-security/harden-runner@5c7944e...91182cc)

---
updated-dependencies:
- dependency-name: step-security/harden-runner
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: all
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Evan Gibler <20933572+egibs@users.noreply.github.com>
@egibs egibs merged commit 0479dd7 into chainguard-dev:main Sep 16, 2024
egibs added a commit to egibs/malcontent that referenced this pull request Sep 25, 2024
…ainguard-dev#455)

* Improve shell, python, and powershell dropper detection

* refresh-sample-testdata refactor (chainguard-dev#450)

* Add shorter output format for 'scan' mode (chainguard-dev#457)

* Bump step-security/harden-runner from 2.9.1 to 2.10.1 in the all group (chainguard-dev#459)

Bumps the all group with 1 update: [step-security/harden-runner](https://github.com/step-security/harden-runner).


Updates `step-security/harden-runner` from 2.9.1 to 2.10.1
- [Release notes](https://github.com/step-security/harden-runner/releases)
- [Commits](step-security/harden-runner@5c7944e...91182cc)

---
updated-dependencies:
- dependency-name: step-security/harden-runner
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: all
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Evan Gibler <20933572+egibs@users.noreply.github.com>

* refresh testdata

* improve dropper detection output

* Update testdata

* Update testdata

* Improve linux_server_stealer targeting

* Update to use latest bincapz-samples

* update scan_archive sample

---------

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Evan Gibler <20933572+egibs@users.noreply.github.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants