Logo
Explore Help
Sign In
security-tools/blue-team-tools
1
0
Fork 0
You've already forked blue-team-tools
Code Issues Pull Requests Actions Packages Projects Releases Wiki Activity
Files
4231fe2efcbfa94cc77b04d302e8dba9b43f0cb7
blue-team-tools/rules/windows
T
History
Florian Roth 4231fe2efc fix: remove duplicate rules in sysmon (generic rule cleanup)
2020-07-01 10:23:30 +02:00
..
builtin
Update win_not_allowed_rdp_access.yml
2020-06-30 10:03:00 +02:00
deprecated
fix: buggy rule
2020-05-23 18:32:02 +02:00
driver_load
fix: bugfix and cosmetics
2020-06-24 18:10:58 +02:00
file_event
fix: renamed files and lien break change
2020-07-01 09:48:48 +02:00
image_load
Changed category names and remove sysmon log source
2020-06-24 17:41:21 +02:00
malware
Further subtechnique updates
2020-06-17 11:31:40 -06:00
network_connection
Changed category names and remove sysmon log source
2020-06-24 17:41:21 +02:00
other
FIX: lint error for title
2020-06-28 11:05:19 +02:00
powershell
Added new rule for pwsh_xor_cmd
2020-06-29 22:09:58 +02:00
process_access
fix: bugfix and cosmetics
2020-06-24 18:10:58 +02:00
process_creation
fix: renamed files and lien break change
2020-07-01 09:48:48 +02:00
registry_event
fix: renamed files and lien break change
2020-07-01 09:48:48 +02:00
sysmon
fix: remove duplicate rules in sysmon (generic rule cleanup)
2020-07-01 10:23:30 +02:00
Powered by Gitea Version: 1.26.1 Page: 95ms Template: 11ms
Auto
English
Bahasa Indonesia Deutsch English Español Français Gaeilge Italiano Latviešu Magyar nyelv Nederlands Polski Português de Portugal Português do Brasil Suomi Svenska Türkçe Čeština Ελληνικά Български Русский Українська فارسی മലയാളം 日本語 简体中文 繁體中文(台灣) 繁體中文(香港) 한국어
Licenses API