Logo
Explore Help
Sign In
security-tools/blue-team-tools
1
0
Fork 0
You've already forked blue-team-tools
Code Issues Pull Requests Actions Packages Projects Releases Wiki Activity
Files
3f75cd0844eaee81f85a48ac205768337848d682
blue-team-tools/rules/windows
T
History
Florian Roth 3f75cd0844 Update proc_creation_win_right_to_left_override.yml
2023-02-03 15:43:30 +01:00
..
builtin
fix: FPs with IPv6 adresses
2023-02-01 11:21:12 +01:00
create_remote_thread
Promotion rules (#3821)
2022-12-27 12:29:10 +01:00
create_stream_hash
feat: update sharing websites
2023-01-19 22:07:31 +01:00
dns_query
change status to test
2023-01-27 06:48:34 +01:00
driver_load
fix: remove duplicate entries
2023-01-11 16:34:03 +01:00
file
Merge remote-tracking branch 'upstream/master' into pormotion_status
2023-01-27 11:29:27 +01:00
image_load
Merge pull request #3972 from frack113/hijacklibs
2023-01-30 10:49:11 +01:00
network_connection
change status to test
2023-01-27 06:48:34 +01:00
pipe_created
change status to test
2023-01-27 06:48:34 +01:00
powershell
feat: multiple updates and enhancements
2023-01-30 20:02:45 +01:00
process_access
feat: multiple updates and enhancements
2023-01-30 20:02:45 +01:00
process_creation
Update proc_creation_win_right_to_left_override.yml
2023-02-03 15:43:30 +01:00
raw_access_thread
fix: more fp found in testing
2023-01-18 20:16:34 +01:00
registry
Rename registry_set_persistance_xll.yml to registry_set_persistence_xll.yml
2023-01-30 14:33:49 +05:00
sysmon
change status to test
2023-01-27 06:48:34 +01:00
wmi_event
Order yaml field
2022-10-25 12:00:56 +02:00
Powered by Gitea Version: 1.26.1 Page: 925ms Template: 20ms
Auto
English
Bahasa Indonesia Deutsch English Español Français Gaeilge Italiano Latviešu Magyar nyelv Nederlands Polski Português de Portugal Português do Brasil Suomi Svenska Türkçe Čeština Ελληνικά Български Русский Українська فارسی മലയാളം 日本語 简体中文 繁體中文(台灣) 繁體中文(香港) 한국어
Licenses API