ENNAENNA

capa

Apache-2.0

馃敩 Digital ForensicsPython

Capa is an automated tool for identifying capabilities in executable files, detecting techniques such as persistence mechanisms, command and control (C2) communications, and anti-analysis methods. Built in Python, Capa uses a rule-based approach to analyze binary files and report on the functionalities they contain. This tool is essential for malware analysis, aiding security researchers in understanding the potential impact of a sample.

6.0kstars
696forks
273issues
Updated 24d ago
+I use this

Tags

malware-analysiscapability-detectionreverse-engineeringtriagebinary-analysisgsoc-2026threat-intelligence

Community Reviews

More in Digital Forensics