Intellescope
News
Features, capabilities, walkthroughs, and direction — how the product works and how to use it. Shipped-change notes live on Releases.
- WalkthroughThe clock is an input: how an unpinned timestamp lied to us four timesA scoring engine that weighs evidence by age has a second input besides the evidence — the clock. We hit the same bug four times before we named it, and every time it returned a plausible number instead of an error.
- WalkthroughField note: MalwareBazaar's API no longer carries listing-time detectionA short negative result for anyone reconstructing hash lead-time. The VirusTotal ratio recorded when a sample was listed is gone from the query API — zero of forty samples carried it. We're publishing the dead end so you don't have to find it yourself.
- WalkthroughWe measured our own hash verdicts, found three defects, and fixed themThree defects the measurement found in our own scoring, and what we changed to fix them — including the claims we had to retract.
- WalkthroughHow to read a verdictA two-minute tour of what you're looking at when you open an indicator — score, evidence, confidence, and what to do next.