Files
blue-team-tools/rules/network
Nate Guagenti b255586117 condition fix and add fields
should be `operation` not `endpoint` for the detection logic.
added various fields useful for investigation
2021-08-23 14:59:06 -04:00
..
2020-09-15 07:02:30 -06:00
2021-08-23 14:59:06 -04:00
2020-09-15 07:02:30 -06:00
2020-09-15 07:02:30 -06:00
2020-09-15 07:02:30 -06:00
2020-09-15 07:02:30 -06:00
2021-07-11 09:25:33 +02:00
2020-09-15 07:02:30 -06:00