This website requires JavaScript.
Explore
Help
Sign In
security-tools
/
blue-team-tools
Watch
1
Star
0
Fork
0
You've already forked blue-team-tools
Code
Issues
Pull Requests
Actions
Packages
Projects
Releases
Wiki
Activity
Files
2fbd35053e856aaa8071296295f2ea6573a4fdf8
blue-team-tools
/
rules
/
windows
T
History
Florian Roth
2fbd35053e
rule: improved formbook detection rule
2019-09-30 19:01:40 +02:00
..
builtin
Merge pull request
#443
from EccoTheFlintstone/aduserbck
2019-09-25 17:43:22 +02:00
malware
Rule: separate Ryuk rule created for VBurovs strings
2019-08-06 10:33:46 +02:00
other
Converted to use the new process_creation data source
2019-03-09 20:57:59 +03:00
powershell
powershell false positives
2019-09-06 03:54:19 -04:00
process_creation
rule: improved formbook detection rule
2019-09-30 19:01:40 +02:00
sysmon
Merge pull request
#457
from EccoTheFlintstone/sysmon_eventid3
2019-09-28 10:16:02 +02:00