Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Improve Screenshot Detection by Modifying capture-screenshot.yml #1

Merged
merged 1 commit into from
Feb 24, 2025

Conversation

akh7177
Copy link
Owner

@akh7177 akh7177 commented Feb 24, 2025

This PR enhances screenshot detection in capa by modifying the existing capture-screenshot.yml rule

Added GDI, GDIP, and DirectX API calls to improve detection accuracy for various screenshot capture methods.
Ensured the rule correctly identifies API calls commonly used in malware for stealthy screenshot capturing.

@akh7177 akh7177 merged commit 4cd4879 into master Feb 24, 2025
@akh7177 akh7177 deleted the add-screenshot-rule branch February 24, 2025 17:18
@akh7177 akh7177 restored the add-screenshot-rule branch February 24, 2025 17:26
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant