Logo
Explore Help
Sign In
security-tools/blue-team-tools
1
0
Fork 0
You've already forked blue-team-tools
Code Issues Pull Requests Actions Packages Projects Releases Wiki Activity
Files
3bf16635030adb6d3257c69055c592192b265636
blue-team-tools/rules/windows
T
History
yugoslavskiy 3bf1663503 Merge pull request #1232 from V3T0/v3t0_oscd_lolbas_tracker
[OSCD] Added a rule to detect the execution of tracker.exe with suspicious arguments
2021-01-06 00:32:35 +03:00
..
builtin
Merge pull request #1229 from zinint/1009-19-1
2021-01-06 00:24:08 +03:00
deprecated
fix: buggy rule
2020-05-23 18:32:02 +02:00
driver_load
Update sysmon_susp_driver_load.yml
2020-11-19 22:56:34 -03:00
file_event
Merge pull request #1219 from ryanplasma/rplas-SIGMA-547-page-37
2021-01-06 00:22:57 +03:00
image_load
Merge pull request #1139 from omkar72/oscd-4
2021-01-05 23:17:25 +03:00
malware
Merge pull request #1231 from vburov/patch-16
2021-01-06 00:30:08 +03:00
network_connection
Remove additional backslash
2020-11-20 00:53:13 -03:00
other
Merge pull request #1166 from drdoc/oscd
2021-01-06 00:12:34 +03:00
powershell
Merge pull request #1229 from zinint/1009-19-1
2021-01-06 00:24:08 +03:00
process_access
Merge pull request #1077 from uchakin/oscd
2021-01-05 23:06:24 +03:00
process_creation
Merge pull request #1232 from V3T0/v3t0_oscd_lolbas_tracker
2021-01-06 00:32:35 +03:00
registry_event
Merge pull request #1211 from zipa-original/win_persistence_telemetry
2021-01-06 00:20:51 +03:00
sysmon
Merge pull request #1179 from SanWieb/OSCD_regedit_3
2021-01-06 00:16:45 +03:00
Powered by Gitea Version: 1.26.1 Page: 58ms Template: 6ms
Auto
English
Bahasa Indonesia Deutsch English Español Français Gaeilge Italiano Latviešu Magyar nyelv Nederlands Polski Português de Portugal Português do Brasil Suomi Svenska Türkçe Čeština Ελληνικά Български Русский Українська فارسی മലയാളം 日本語 简体中文 繁體中文(台灣) 繁體中文(香港) 한국어
Licenses API