Logo
Explore Help
Sign In
security-tools/blue-team-tools
1
0
Fork 0
You've already forked blue-team-tools
Code Issues Pull Requests Actions Packages Projects Releases Wiki Activity
Files
23620bc8aafbdf95e2d2560ab77336749d683e77
blue-team-tools/rules/windows
T
History
frack113 23620bc8aa Update proc_creation_win_lsa_disablerestrictedadmin.yml
2023-01-13 12:31:28 +01:00
..
builtin
Move rules
2023-01-13 12:15:08 +01:00
create_remote_thread
Promotion rules (#3821)
2022-12-27 12:29:10 +01:00
create_stream_hash
Fix invalid field cast or name (#3841)
2022-12-30 11:46:21 +01:00
dns_query
feat: more updates and fixes
2023-01-12 01:05:48 +01:00
driver_load
fix: remove duplicate entries
2023-01-11 16:34:03 +01:00
file
Merge pull request #3914 from redsand/fp_citrix_receiver
2023-01-12 17:25:08 +01:00
image_load
Update image_load_side_load_non_existent_dlls.yml
2023-01-10 10:41:48 +01:00
network_connection
feat: updates and enhancements
2023-01-10 00:13:37 +01:00
pipe_created
fix: remove unneeded double backslash escape (#3844)
2022-12-31 08:32:46 +01:00
powershell
Removing filter specification in condition
2023-01-12 16:21:58 +00:00
process_access
fix: fp found in testing
2023-01-11 20:05:55 +01:00
process_creation
Update proc_creation_win_lsa_disablerestrictedadmin.yml
2023-01-13 12:31:28 +01:00
raw_access_thread
feat: enhance duplicate test (#3736)
2022-11-29 13:47:09 +01:00
registry
Move rules
2023-01-13 12:15:08 +01:00
sysmon
fix: update modified date
2023-01-03 10:37:09 +01:00
wmi_event
…
Powered by Gitea Version: 1.26.1 Page: 1032ms Template: 12ms
Auto
English
Bahasa Indonesia Deutsch English Español Français Gaeilge Italiano Latviešu Magyar nyelv Nederlands Polski Português de Portugal Português do Brasil Suomi Svenska Türkçe Čeština Ελληνικά Български Русский Українська فارسی മലയാളം 日本語 简体中文 繁體中文(台灣) 繁體中文(香港) 한국어
Licenses API