v0.4.0
What's Changed
- Rule description improvements for consistency by @tstromberg in #29
- Increase /dev/shm suspicion, more proclist rules by @tstromberg in #30
- Improve fake process name detection by @tstromberg in #31
- Improve identification of shell scripts by @tstromberg in #32
- Stream table rendering, widen values column by @tstromberg in #33
- Tune query results against Wolfi by @tstromberg in #34
- Improve rules from FreeDownloadManager analysis by @tstromberg in #35
- Improve rules from Godzilla webshell analysis by @tstromberg in #36
- Colorize risk levels in table output by @tstromberg in #37
- Show rule name for base64/xor content by @tstromberg in #38
- table output: separate matching values with newlines by @tstromberg in #39
- Improve rules from Platypus/Termite inspection by @tstromberg in #40
- Improve rules from Stealthworker inspection by @tstromberg in #41
- Improve PHP/Python/NodeJS rules through BSKC analysis by @tstromberg in #42
Full Changelog: v0.3.0...v0.4.0