frack113
|
6558a5b110
|
fix TargetImage|endswith
|
2021-06-21 21:19:04 +02:00 |
|
Jonhnathan
|
93faca413e
|
Update sysmon_lsass_memdump.yml
|
2020-10-15 17:17:57 -03:00 |
|
aw350m3
|
399f378269
|
att&ck tags review: windows/powershell, windows/process_access, windows/network_connection
|
2020-08-24 23:31:26 +00:00 |
|
aw350m3
|
3aa1ad68fb
|
windows/process_access folder reviewed. Old ID’s marked with comment “an old one”. These ID’s have to be removed in future.
|
2020-08-23 02:03:06 +00:00 |
|
Florian Roth
|
f3fedef8f5
|
Changed category names and remove sysmon log source
|
2020-06-24 17:41:21 +02:00 |
|
Steven Goossens
|
e5f36dd146
|
Added rules files split into folders
|
2020-06-10 16:32:30 +02:00 |
|