This website requires JavaScript.
Explore
Help
Sign In
security-tools
/
blue-team-tools
Watch
1
Star
0
Fork
0
You've already forked blue-team-tools
Code
Issues
Pull Requests
Actions
Packages
Projects
Releases
Wiki
Activity
Files
0f8f5fb29cb06452bfd744fbfbfe9ace6af9a049
blue-team-tools
/
rules
/
windows
T
History
4A616D6573
0f8f5fb29c
Create win_susp_ntlm_rdp.yml
2020-05-22 13:24:27 +10:00
..
builtin
Create win_susp_ntlm_rdp.yml
2020-05-22 13:24:27 +10:00
malware
rules: AV rules updated to reflect 1.7.2 auf AV cheat sheet
2019-10-04 16:17:34 +02:00
other
Converted to use the new process_creation data source
2019-03-09 20:57:59 +03:00
powershell
powershell false positives
2019-09-06 03:54:19 -04:00
process_creation
Revert "Update win_susp_net_execution.yml"
2019-10-25 12:03:23 +11:00
sysmon
fix: relevant fields in lsass dll load rule
2019-10-16 19:09:20 +02:00