This website requires JavaScript.
Explore
Help
Sign In
security-tools
/
blue-team-tools
Watch
1
Star
0
Fork
0
You've already forked blue-team-tools
Code
Issues
Pull Requests
Actions
Packages
Projects
Releases
Wiki
Activity
Files
066be03c19a3b9334136d64d3a28b133c97d9c93
blue-team-tools
/
rules
/
windows
T
History
yugoslavskiy
066be03c19
Merge pull request
#1212
from aleqs4ndr/oscd-2020
...
[OSCD] Added a rule to detect possible Zerologon exploitation
2021-01-06 00:21:12 +03:00
..
builtin
Merge pull request
#1212
from aleqs4ndr/oscd-2020
2021-01-06 00:21:12 +03:00
deprecated
fix: buggy rule
2020-05-23 18:32:02 +02:00
driver_load
Update sysmon_susp_driver_load.yml
2020-11-19 22:56:34 -03:00
file_event
Merge pull request
#1209
from vburov/patch-15
2021-01-06 00:19:41 +03:00
image_load
Merge pull request
#1139
from omkar72/oscd-4
2021-01-05 23:17:25 +03:00
malware
Remove additional backslash
2020-11-19 23:15:38 -03:00
network_connection
Remove additional backslash
2020-11-20 00:53:13 -03:00
other
Merge pull request
#1166
from drdoc/oscd
2021-01-06 00:12:34 +03:00
powershell
Merge pull request
#1191
from vburov/patch-14
2021-01-06 00:18:12 +03:00
process_access
Merge pull request
#1077
from uchakin/oscd
2021-01-05 23:06:24 +03:00
process_creation
Merge pull request
#1206
from w0rk3r/oscd5
2021-01-06 00:18:53 +03:00
registry_event
Merge pull request
#1211
from zipa-original/win_persistence_telemetry
2021-01-06 00:20:51 +03:00
sysmon
Merge pull request
#1179
from SanWieb/OSCD_regedit_3
2021-01-06 00:16:45 +03:00