Releases: tylabs/qs_old
Releases · tylabs/qs_old
CVE-2017-8759 detection added
Updated to include a new OLE2Link signature from open sources, suppress Yara warnings and detect known CVE-2017-8759 variants.
Memory leak fixed
This release fixes an issue where embedded zip extraction leaked memory used by the Yara API.
Safety and performance enhancements
Removed all tempnam temporary file usage and converted the inflate, uncompress, and unzip functionality to use memory buffers instead of file pointers. Some RTF extraction enhancements imported from commercial version.
Initial Release of quicksand_lite
Detect exploits and active content in Office documents, detect embedded obfuscated executables.