Commit Graph

12 Commits

Author SHA1 Message Date
SomeOne 295054dcbe Replace old mitre techniques by new one 2021-08-22 13:57:56 +02:00
Arnim Rupp ad3b829f2d Update av_webshell.yml
Added new strings and moved some from startwith to contains.
2021-05-08 08:49:17 +02:00
Anton Kutepov 3f45269296 Merge branch 'oscd'
B
B
B
B
A
2021-03-02 22:58:41 +03:00
Arnim Rupp d5de3fe5f9 more AV event and suspicious commands
some of the AV events are duplicates to win_av_relevant_match.yml, should we clean that up or include the strings in both?
2021-01-07 17:54:19 +01:00
Jonhnathan dbad6c637f Update av_webshell.yml 2020-10-27 22:35:45 -03:00
Jonhnathan 9795c95a9b Update av_webshell.yml 2020-10-15 20:25:34 -03:00
Jonhnathan 69c90570ec Update av_webshell.yml 2020-10-15 16:14:08 -03:00
Ivan Kirillov 0fbfcc6ba9 Initial round of subtechnique updates 2020-06-16 14:46:08 -06:00
Thomas Patzke 0592cbb67a Added UUIDs to rules 2019-11-12 23:12:27 +01:00
Florian Roth d096ab0e21 rules: AV rules updated to reflect 1.7.2 auf AV cheat sheet 2019-10-04 16:17:34 +02:00
Thomas Patzke 81515b530c ATT&CK tagging QA 2018-09-20 12:44:44 +02:00
Florian Roth 13276ecf31 Rule: AV alerts - webshells 2018-09-09 11:04:27 +02:00