This website requires JavaScript.
Explore
Help
Sign In
security-tools
/
blue-team-tools
Watch
1
Star
0
Fork
0
You've already forked blue-team-tools
Code
Issues
Pull Requests
Actions
Packages
Projects
Releases
Wiki
Activity
Files
12e5eeac9ecb3e5d4e2243e9b2c829ca331c609f
blue-team-tools
/
rules
/
windows
/
wmi_event
T
History
Florian Roth
b0c2d7b75a
fix: tags for WMI / execution / persistence
2021-09-01 16:34:50 +02:00
..
sysmon_wmi_event_subscription.yml
- Remove 'service: sysmon' since defining the categories made the rules generic
2020-10-02 09:37:52 +02:00
sysmon_wmi_susp_encoded_scripts.yml
fix: tags for WMI / execution / persistence
2021-09-01 16:34:50 +02:00
sysmon_wmi_susp_scripting.yml
rule: extended WMI suspicious scripts rule
2021-09-01 13:57:48 +02:00