Logo
Explore Help
Sign In
security-tools/blue-team-tools
1
0
Fork 0
You've already forked blue-team-tools
Code Issues Pull Requests Actions Packages Projects Releases Wiki Activity
Files
483db992f7d7505c8b67f60eb6a88420f727ca90
blue-team-tools/rules/windows
T
History
phantinuss 628f616dbe fix: sharpen regex to not match default windows rundll32 usage
2023-01-23 12:57:50 +01:00
..
builtin
fix: filter fp found in testing
2023-01-20 11:39:08 +01:00
create_remote_thread
Promotion rules (#3821)
2022-12-27 12:29:10 +01:00
create_stream_hash
feat: update sharing websites
2023-01-19 22:07:31 +01:00
dns_query
feat: new rules and updates
2023-01-17 01:00:44 +01:00
driver_load
fix: remove duplicate entries
2023-01-11 16:34:03 +01:00
file
fix: optimize "Invoke-Sharp" coverage
2023-01-21 12:28:08 +01:00
image_load
fix: filter fp found in testing
2023-01-20 11:39:08 +01:00
network_connection
fix: filter fp found in testing
2023-01-20 11:39:08 +01:00
pipe_created
fix: remove unneeded double backslash escape (#3844)
2022-12-31 08:32:46 +01:00
powershell
feat: update pwsh ad module rules
2023-01-22 20:07:42 +01:00
process_access
fix: FP in testing environment
2023-01-23 12:05:28 +01:00
process_creation
fix: sharpen regex to not match default windows rundll32 usage
2023-01-23 12:57:50 +01:00
raw_access_thread
fix: more fp found in testing
2023-01-18 20:16:34 +01:00
registry
fix: optimize pwsh reg logging tamper rule
2023-01-21 12:28:28 +01:00
sysmon
fix: update modified date
2023-01-03 10:37:09 +01:00
wmi_event
Order yaml field
2022-10-25 12:00:56 +02:00
Powered by Gitea Version: 1.26.1 Page: 545ms Template: 10ms
Auto
English
Bahasa Indonesia Deutsch English Español Français Gaeilge Italiano Latviešu Magyar nyelv Nederlands Polski Português de Portugal Português do Brasil Suomi Svenska Türkçe Čeština Ελληνικά Български Русский Українська فارسی മലയാളം 日本語 简体中文 繁體中文(台灣) 繁體中文(香港) 한국어
Licenses API