mandiant / mandiant/capa-rules

process injection techniques from https://github.com/odzhan/injection

Open
#141 0 comments 0 reactions 0 assignees View on GitHub

Nobody has claimed this yet.

rule idea
Dominant language
No language data
Stars
736
Forks
245
Avg merge
4d 53m
Merged PRs (30d)
2

Description

https://github.com/odzhan/injection

![image](https://user-images.githubusercontent.com/156560/95006936-fc54a000-05c6-11eb-8992-48c03335274e.png)

Contributor guide

Open the contributing guide

First steps

  1. Read the whole issue, then the project's contributing guide.
  2. Comment on the issue to say you are picking it up — it saves two people doing the same work.
  3. Fork the repository and make your change on a branch.
  4. Open a pull request that references the issue number.

Research direction

Start by reading the linked odzhan/injection repository and the attached image to determine which process-injection techniques this issue proposes covering. No files or tests are named, so inspect the capa-rules repository guidance before defining the rule scope; done means the selected techniques are represented and validated according to that project’s conventions.

Written by the indexing model from the issue text.

Assessment

Domain
security
Issue type
Feature
Difficulty
5/5
Estimated time
Over a week
Activity status
Stale
Clarity
Needs clarification
Newbie friendliness
15/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.