Commit message (Collapse) | Author | Age | ||
---|---|---|---|---|
... | ||||
| | * | | Fixed docstring typos for ndpi_finalize_initalization | Toni Uhlig | 2020-05-17 | |
| | |/ | | | | | | | | | | Signed-off-by: Toni Uhlig <matzeton@googlemail.com> | |||
* | / | Removed bittorrent false positive detection | Luca Deri | 2020-05-20 | |
|/ / | ||||
* / | Added fix to avoid potential heap buffer overflow in H.323 dissector | Luca Deri | 2020-05-19 | |
|/ | | | | Modified HTTP report information to make it closer to the HTTP field names | |||
* | Added check for invalid HTTP URLs | Luca Deri | 2020-05-16 | |
| | ||||
* | Added check for binary scripts | Luca Deri | 2020-05-15 | |
| | | | | | Added NDPI_HTTP_NUMERIC_IP_HOST risk ndpi_risk moved to 32 bit | |||
* | Fix for potential heap-buffer-overflow in ndpi_search_openvpn | Luca Deri | 2020-05-15 | |
| | ||||
* | Added NDPI_HTTP_SUSPICIOUS_USER_AGENT ndpi_risk | Luca Deri | 2020-05-15 | |
| | ||||
* | Added NDPI_TLS_CERTIFICATE_EXPIRED, NDPI_TLS_CERTIFICATE_MISMATCH, to ndpi_risk | Luca Deri | 2020-05-15 | |
| | ||||
* | Gotomeeting address range fix | Luca Deri | 2020-05-15 | |
| | ||||
* | Improvements on GotoMeeting | Luca Deri | 2020-05-15 | |
| | | | | Added pcap for testing malware | |||
* | Extend filetype matching for Content-Disposition header | loures | 2020-05-14 | |
| | ||||
* | Extend packet struct with Content-Disposition HTTP header field | loures | 2020-05-14 | |
| | | | | and improve HTTP binary transfer mime type check | |||
* | Code clenup for PR #902 | Luca Deri | 2020-05-14 | |
| | ||||
* | Set risk field instead of changing protocol when checking for dangerous | loures | 2020-05-13 | |
| | | | | HTTP traffic | |||
* | Add check for HTTP transfer of executable files | loures | 2020-05-13 | |
| | ||||
* | Code cleanup | Luca Deri | 2020-05-13 | |
| | ||||
* | Merge pull request #897 from catenacyber/fuzzoracle | Luca Deri | 2020-05-12 | |
|\ | | | | | Adds bound check in oracle protocol | |||
| * | Adds bound check in oracle protocol | Philippe Antoine | 2020-05-10 | |
| | | | | | | | | | | Found by oss-fuzz https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=21780 | |||
* | | Merge pull request #896 from IvanNardi/nats | Luca Deri | 2020-05-12 | |
|\ \ | | | | | | | Fix NATS dissector | |||
| * | | Fix NATS dissector | Nardi Ivan | 2020-05-09 | |
| |/ | ||||
* | | Invalid TLS check | Luca Deri | 2020-05-12 | |
| | | ||||
* | | Added NDPI_XXX_BIT_16 | Luca Deri | 2020-05-11 | |
| | | ||||
* | | Added TLS weak cipher and obsolete protocol version detection | Luca Deri | 2020-05-10 | |
| | | ||||
* | | Added detection of self-signed TLS certificates | Luca Deri | 2020-05-10 | |
| | | ||||
* | | Added the ability to detect when a known protocol is using a non-standard port | Luca Deri | 2020-05-10 | |
|/ | | | | Added check to spot executables exchanged via HTTP | |||
* | Cleaned hyperscan leftover | Luca Deri | 2020-05-08 | |
| | | | | Added further hyperscan hooks | |||
* | Added TLS issuerDN and subjectDN | Luca Deri | 2020-05-07 | |
| | ||||
* | Reworked TLS dissector with a certificate RDN sequence reader | Luca Deri | 2020-05-07 | |
| | ||||
* | Fixed category matching | Luca Deri | 2020-05-06 | |
| | ||||
* | API cleanup for indetifying explicitly in automa's what we're searching ↵ | Luca Deri | 2020-05-06 | |
| | | | | | | (protocol or category) Removed hyperscan support that is apperently unused | |||
* | Updated automa API to use 32 bit values splits from protocol/categpry | Luca Deri | 2020-05-06 | |
| | ||||
* | Added support for Telegram v6 | Luca Deri | 2020-05-06 | |
| | ||||
* | Introduced custom protocols with IP and (optional) port support | Luca Deri | 2020-05-06 | |
| | | | | | | | | | | | | | | | | Example - Single IP address ip:213.75.170.11@CustomProtocol - IP address with CIDR ip:213.75.170.11/32@CustomProtocol - IP address with CIDR and port ip:213.75.170.11/32:443@CustomProtocol Please note that there are some restrictions on the port usage. They have been listed in example/protos.txt | |||
* | Various fixes to patricia tree handling | Luca Deri | 2020-05-06 | |
| | ||||
* | False positive fixes | Luca Deri | 2020-05-06 | |
| | ||||
* | Updated API | Luca Deri | 2020-05-06 | |
| | ||||
* | Reworked protocol handling chnging it is u_int16_t | Luca Deri | 2020-05-06 | |
| | ||||
* | Removed now obsolete MSN protocol | Luca Deri | 2020-05-03 | |
| | | | | Added nats.io protocol dissector | |||
* | SSH boundary check rework | Luca Deri | 2020-04-30 | |
| | ||||
* | Minor cleanup | Luca Deri | 2020-04-30 | |
| | ||||
* | Better fix for integer overflow in SSH | Philippe Antoine | 2020-04-30 | |
| | | | | Credits to GHSL | |||
* | Merge pull request #883 from leonn/websocket | Luca Deri | 2020-04-27 | |
|\ | | | | | :bulb: implement WebSocket protocol dissector | |||
| * | :bulb: implement websocket protocol dissector | Leonn Paiva | 2020-04-26 | |
| | | ||||
* | | Handle empty blocks | Alfredo Cardigliano | 2020-04-27 | |
|/ | ||||
* | Enable IEC 60870-5-104 dissector | Alfredo Cardigliano | 2020-04-24 | |
| | ||||
* | Warning fix | Luca Deri | 2020-04-22 | |
| | ||||
* | Merge pull request #881 from leonn/bug_protocol_was_guessed | Luca Deri | 2020-04-22 | |
|\ | | | | | Bug protocol was guessed | |||
| * | :bug: use protocol_was_guessed in ndpi_detection_giveup | Leonn Paiva | 2020-04-22 | |
| | | ||||
| * | :cool: code ident & style | Leonn Paiva | 2020-04-22 | |
| | | ||||
* | | Fix some compilation warnings | Nardi Ivan | 2020-04-20 | |
| | |