Commit Graph

7088 Commits

Author SHA1 Message Date
frack113 e098fc73cb add keywords condition 2021-08-17 06:24:04 +02:00
frack113 32fc191163 fix cs-uri-query and cs-uri-stem 2021-08-11 15:09:53 +02:00
frack113 ff5c9116a4 Update to w3c-logging 2021-08-11 11:28:04 +02:00
frack113 50ccd87904 fix title 2021-08-10 13:16:45 +02:00
frack113 1437b1943a add web_cve_2021_26858_iis_rce.yml 2021-08-10 13:09:43 +02:00
Florian Roth 17fb418271 Merge pull request #1817 from SigmaHQ/rule-devel
rules: ProxyShell refactoring and new rule
2021-08-10 08:18:32 +02:00
frack113 89e3fb1d86 Merge pull request #1814 from austinsonger/azure_vpn_connection_modified_or_deleted.yml
azure_vpn_connection_modified_or_deleted.yml
2021-08-10 06:36:46 +02:00
frack113 a1917b4247 Merge pull request #1813 from austinsonger/azure_virtual_network_modified_or_deleted.yml
azure_virtual_network_modified_or_deleted.yml
2021-08-10 06:22:25 +02:00
frack113 f7d3f93907 Merge pull request #1807 from austinsonger/azure_network_security_modified_or_deleted.yml
azure_network_security_modified_or_deleted.yml
2021-08-10 06:21:45 +02:00
frack113 9bd60c45c6 Merge pull request #1806 from austinsonger/azure_network_p2s_vpn_modified_or_deleted.yml
azure_network_p2s_vpn_modified_or_deleted.yml
2021-08-10 06:21:19 +02:00
Austin Songer fa54a38394 Update azure_virtual_network_modified_or_deleted.yml 2021-08-09 15:51:43 -05:00
Austin Songer 27441d7093 Update azure_network_p2s_vpn_modified_or_deleted.yml 2021-08-09 15:37:53 -05:00
Austin Songer 5b25f56964 Update azure_network_security_modified_or_deleted.yml 2021-08-09 15:36:30 -05:00
frack113 3a873f6e7a Merge pull request #1811 from austinsonger/azure_firewall_modified_or_deleted.yml
azure_firewall_modified_or_deleted.yml
2021-08-09 22:24:41 +02:00
frack113 51eab7f366 Merge pull request #1810 from austinsonger/azure_firewall_rule_collection_modified_or_deleted.yml
azure_firewall_rule_collection_modified_or_deleted.yml
2021-08-09 22:23:06 +02:00
frack113 b4e6e0eab3 Merge pull request #1809 from austinsonger/azure_network_firewall_rule_modified_or_deleted.yml
azure_network_firewall_rule_modified_or_deleted.yml
2021-08-09 22:21:04 +02:00
frack113 3b4d782135 Merge pull request #1812 from austinsonger/azure_dns_zone_modified_or_deleted.yml
azure_dns_zone_modified_or_deleted.yml
2021-08-09 22:14:07 +02:00
frack113 ee777350ab Merge pull request #1808 from austinsonger/azure_network_virtual_device_modified_or_deleted.yml
azure_network_virtual_device_modified_or_deleted.yml
2021-08-09 22:11:28 +02:00
Austin Songer 1f1aa7c31f Update azure_dns_zone_modified_or_deleted.yml 2021-08-09 14:38:15 -05:00
Austin Songer b9026f2dfe Update azure_dns_zone_modified_or_deleted.yml 2021-08-09 14:36:50 -05:00
Austin Songer 27ce557562 Update azure_virtual_network_modified_or_deleted.yml 2021-08-09 14:35:45 -05:00
Austin Songer 70e2bb06a2 Update azure_vpn_connection_modified_or_deleted.yml 2021-08-09 14:35:27 -05:00
Austin Songer c3efcbe292 Update azure_network_virtual_device_modified_or_deleted.yml 2021-08-09 14:30:57 -05:00
Florian Roth dbf8aecd83 fix: typo in cmdlet name 2021-08-09 18:05:51 +02:00
Florian Roth a9ad4eda4a rules: ProxyShell refactoring and new rule 2021-08-09 17:57:34 +02:00
frack113 5df2706669 Merge pull request #1800 from austinsonger/azure_kubernetes_network_policy_change.yml
azure_kubernetes_network_policy_change.yml
2021-08-09 10:57:55 +02:00
frack113 5cf01c5a05 Merge pull request #1799 from austinsonger/azure_kubernetes_sensitive_role_access.yml
azure_kubernetes_role_access.yml
2021-08-09 10:29:27 +02:00
frack113 6b21a881ca Merge pull request #1700 from heyibrahimkhan/patch-5
Create ala-azure-aws_cloudtrail.yml
2021-08-09 10:21:34 +02:00
frack113 30260e8bf7 formatting falsepositives 2021-08-09 10:07:26 +02:00
frack113 f63b4147ce formatting falsepositives 2021-08-09 10:06:31 +02:00
frack113 68914879ee Merge pull request #1798 from austinsonger/azure_kubernetes_cluster_created_or_deleted.yml
azure_kubernetes_cluster_created_or_deleted.yml
2021-08-09 10:04:55 +02:00
frack113 d662302065 formatting falsepositives 2021-08-09 09:26:04 +02:00
frack113 a4dc849fdb Merge pull request #1796 from austinsonger/azure_kubernetes_service_account_modified_or_deleted.yml
azure_kubernetes_service_account_modified_or_deleted.yml
2021-08-09 09:24:35 +02:00
frack113 b0105d857e Merge pull request #1795 from austinsonger/azure_container_registry_created_or_deleted.yml
azure_container_registry_created_or_deleted.yml
2021-08-09 09:18:13 +02:00
frack113 30cb4f3fe4 Merge pull request #1794 from austinsonger/azure_kubernetes_clusterrolebinding_modified_or_deleted.yml
azure_kubernetes_rolebinding_modified_or_deleted.yml
2021-08-09 08:58:37 +02:00
frack113 dd2aa8706d Merge pull request #1786 from j91321/anydesk
Silent installation of AnyDesk (Conti)
2021-08-09 08:57:32 +02:00
frack113 5158bda8ac formatting falsepositives 2021-08-09 08:52:50 +02:00
frack113 a333aa526c formatting falsepositives 2021-08-09 08:30:52 +02:00
Austin Songer 6989174e4b azure_kubernetes_secret_or_config_object_access.yml (#1790)
* Create azure_kubernetes_secret_or_config_object_access.yml

* Delete azure_kubernetes_secret_or_config_object_access.yml

* Create azure_kubernetes_secret_or_config_object_access.yml

* Update azure_kubernetes_secret_or_config_object_access.yml

* Update azure_kubernetes_secret_or_config_object_access.yml

* Update azure_kubernetes_secret_or_config_object_access.yml

Co-authored-by: frack113 <62423083+frack113@users.noreply.github.com>
2021-08-09 08:29:42 +02:00
frack113 cecabddac3 formatting falsepositives 2021-08-09 08:28:42 +02:00
Austin Songer 7393bde279 Update azure_dns_zone_modified_or_deleted.yml 2021-08-08 23:03:43 -05:00
Austin Songer 7a1f2c317a Update azure_network_firewall_rule_modified_or_deleted.yml 2021-08-08 23:02:42 -05:00
Austin Songer ca115863ee Update azure_dns_zone_modified_or_deleted.yml 2021-08-08 23:01:43 -05:00
Austin Songer 47a1ff2b96 Update azure_network_firewall_rule_modified_or_deleted.yml 2021-08-08 23:01:19 -05:00
Austin Songer bed03b324c Update azure_vpn_connection_modified_or_deleted.yml 2021-08-08 23:00:43 -05:00
Austin Songer 688a531e6e Update azure_network_p2s_vpn_modified_or_deleted.yml 2021-08-08 23:00:25 -05:00
Austin Songer d99f1ed60a Update azure_network_security_modified_or_deleted.yml 2021-08-08 23:00:06 -05:00
Austin Songer de405479d2 Update azure_network_virtual_device_modified_or_deleted.yml 2021-08-08 22:59:42 -05:00
Austin Songer 57cc54b4e6 Update azure_virtual_network_modified_or_deleted.yml 2021-08-08 22:58:26 -05:00
Austin Songer f519ec70ec Update azure_dns_zone_modified_or_deleted.yml 2021-08-08 22:58:00 -05:00