Skip to content

Releases: CERT-Polska/drakvuf-sandbox

DRAKVUF Sandbox v0.16.0

05 May 10:34
v0.16.0
4d0b659
Compare
Choose a tag to compare

Installation guide: See Basic installation section in README.md.

Changelog:

  • Hubert Jasudowicz - Bump DRAKVUF (#533)
  • Hubert Jasudowicz - scripts: Add bump_version.py (#532)
  • Konstanty Cieśliński - apply new, more generic analysis format (#503)
  • Adam Kliś - Fix procdot graph generation issue (#531)
  • Hubert Jasudowicz - Bump version to 0.16.0 (#530)
  • Hubert Jasudowicz - drakpdb: Add ImageBase to profiles (#529)
  • Hubert Jasudowicz - drakpdb: Add GdiPlus (#527)
  • Hubert Jasudowicz - scripts: Add split_log.sh (#525)
  • Hubert Jasudowicz - e2e: Depend on drakcore being up when contacting drak-web (#528)
  • Hubert Jasudowicz - drakcore: Bump msql to 1.2.2 (#526)
  • Hubert Jasudowicz - drakrun: Attach profiles to analyses (#504)
  • Hubert Jasudowicz - examples: Remove unused imports from consumer.py (#522)
  • Hubert Jasudowicz - drakrun: Sort plugin list (#521)
  • Hubert Jasudowicz - draksetup: Cleanup kernel PDB file (#519)
  • Hubert Jasudowicz - drakpdb: Fix profile generation for a few PDBs (#518)
  • Michał Leszczyński - drakcore: fix drak-gen-ptxed, unregister it from postprocessing (#517)
  • Michał Leszczyński - ipt: add missing cmdline option (#516)
  • Michał Leszczyński - drakrun: fix IPT support (#512)
  • Michał Leszczyński - drakrun: increase injection timeout to 60 seconds (#514)
  • Michał Leszczyński - drakvuf: include codemon fix (#513)
  • Michał Leszczyński - drakrun: more verbosity (#511)
  • Michał Leszczyński - README: Add organization logos (#507)
  • Michał Leszczyński - bump DRAKVUF to ipt-enabled version (#506)
  • Manorit Chawdhry - drakrun: fix and add network tests (#481)
  • Manorit Chawdhry - drakrun: regression docs improvement (#505)
  • Manorit Chawdhry - drakrun: LVM backend unit tests (#480)
  • Hubert Jasudowicz - drakrun: Dump regression tester (#500)
  • Hubert Jasudowicz - Bump karton to 4.2.0 (#501)
  • Michał Leszczyński - drakrun: add config.ini option for enabling anti-API hammering (#494)
  • Hubert Jasudowicz - drakrun: Fix test mode (#499)
  • Manorit Chawdhry - drakrun: usermode profile generation using Injector (#486)
  • Hubert Jasudowicz - drakrun: Add missing symlink to drakplayground (#493)
  • Hubert Jasudowicz - drakcore: Remove drak-archiver (#491)
  • Hubert Jasudowicz - drakrun: Add support for test analyses (#489)
  • Hubert Jasudowicz - playground: Fix cleanup call (#488)
  • Michał Leszczyński - ci: fix package builds (#487)

DRAKVUF Sandbox v0.16.0-rc2

30 Apr 13:33
4d0b659
Compare
Choose a tag to compare
Pre-release
v0.16.0-rc2

DRAKVUF Sandbox v0.16.0-rc1

27 Apr 13:48
e5248a4
Compare
Choose a tag to compare
Pre-release

DRAKVUF Sandbox v0.15.0-p2

13 Mar 21:15
9f4c981
Compare
Choose a tag to compare

Installation guide: See Basic installation section in README.md.

Changes:

DRAKVUF Sandbox v0.15.0-p1

13 Mar 16:01
627c545
Compare
Choose a tag to compare

Obsolete: See patched release v0.15.0-p2 above.

DRAKVUF Sandbox v0.15.0

12 Mar 22:30
1e5f9f3
Compare
Choose a tag to compare

Obsolete: See patched release v0.15.0-p2 above.

DRAKVUF Sandbox v0.14.0

14 Jan 12:54
Compare
Choose a tag to compare

Installation guide: See Basic installation section in README.md.

Enhancements:

  • Configurable active plugins (per task quality) (#372)
  • Karton task is sent after postprocessing drakrun output (#373)
  • Added support for exporting and importing local snapshot (#376)
  • Added IPT tools (#389)
  • Enabled fast single stepping (#390)
  • Added TLS keys for Wireshark (#392)
  • Upgraded to karton 4 (#398)

Bug fixes:

  • Eject CD-ROMs before postinstall (#377)
  • Pinned MinIO version (#382)
  • Better DLL handling (#383, #384, #385)
  • Added missing ntdll WOW profile (#387)
  • Fix inconsistent argument parsing in drakpdb, qexpose it as cmdline tool (#386)
  • Delete contents of ipt directory when archiving (#388)

DRAKVUF Sandbox v0.13.0

30 Nov 10:43
0ee135a
Compare
Choose a tag to compare

Installation guide: See Basic installation section in README.md.

Breaking changes:

  • Converted drak-postprocess.service into a templated unit file, allowing easier scaling (#363)

Enhancements:

  • Ensure that Xen parameters are set correctly (#332)
  • Added support for PowerShell scripts (#333)
  • Added Karton reconfiguration in drakrun (#346)
  • Added configurable default analysis timeouts (#350)
  • Added analysis ID overrride with use_root_uid (#358)
  • Added drakvuf-bundle customization scripts (#366)

Bug fixes:

  • Fixed ordering of iptables rules (#329)
  • Fixed slow loading of analysis list in web UI (#336)
  • Fixed handling of missing key in /status (#348)
  • Fixed ProcDOT exception handling (#355)
  • Fixed missing dumps/ directory in dumps.zip (#357)

DRAKVUF Sandbox v0.12.0

26 Oct 20:50
c606d3a
Compare
Choose a tag to compare

Installation guide: See Basic installation section in README.md.

When upgrading from older version:

  • Please ensure that in /etc/default/grub.d/xen.cfg, option GRUB_CMDLINE_XEN_DEFAULT contains sched=credit. Afterwards, please execute update-grub && reboot.

Enhancements:

  • drakrun: support network in installation process (#322)
  • Bump DRAKVUF (#323)
  • drop --max-vms, generate vm config upon startup (#318)
  • don't use cmd.exe wrapper when executing target program (#321)

Bug fixes:

  • drakrun: wait for NDB device to appear (#316)
  • docs: fix code block with .NET setup (#317)
  • fix office (#326)

DRAKVUF Sandbox v0.11.1

22 Oct 19:30
5da1b6d
Compare
Choose a tag to compare

Installation guide: See Basic installation section in README.md.

Enhancements:

  • drakrun: attach snapshot modification time to analysis reports (#280)
  • drakcore: Add local SQLite db for caching analysis data (#298)

Bug fixes:

  • drakcore: don't display broken analyses in the web UI (#278)
  • fix DRAKVUF log parsing, bump DRAKVUF (#276)
  • fix errors in examples/push_sample (#286)
  • drakcore: better logging in log postprocessing (#288)
  • drakcore: remove empty directory (#289)
  • draksetup mount: allow to use relative path, default to vm-0 (#294)
  • block plugins introducing instability: dkommon, envmon (#299)
  • fix MinIO credential generation on drakcore installation (#290)
  • bump DRAKVUF to commit f38258 (#302)
  • bump DRAKVUF (change default scheduler to sched=credit) (#311)
  • drakrun: Less logs on parse failure (#310)