This website requires JavaScript.
Explore
Help
Sign In
security-tools
/
blue-team-tools
Watch
1
Star
0
Fork
0
You've already forked blue-team-tools
Code
Issues
Pull Requests
Actions
Packages
Projects
Releases
Wiki
Activity
Files
343a40ced78fb69fc5f7b1e2f8db86c382e0c6fe
blue-team-tools
/
rules
/
windows
T
History
Florian Roth
343a40ced7
Rule: extended exec location rule to support 4688 events
2019-02-21 13:26:48 +01:00
..
builtin
Fixing yara condition
2019-02-20 10:57:24 -05:00
malware
Escaped '\*' to '\\*' where required
2019-02-03 00:24:57 +01:00
other
Rule: WMI Persistence - FPs
2019-02-05 14:35:23 +01:00
powershell
Rule: Suspicious PowerShell keywords
2019-02-11 13:02:38 +01:00
sysmon
Rule: extended exec location rule to support 4688 events
2019-02-21 13:26:48 +01:00