Logo
Explore Help
Sign In
security-tools/blue-team-tools
1
0
Fork 0
You've already forked blue-team-tools
Code Issues Pull Requests Actions Packages Projects Releases Wiki Activity
Files
4adbb3fbd28f5287b787f34f85cc40bee7eccb57
blue-team-tools/rules/windows
T
History
frack113 4adbb3fbd2 Add proc_creation_win_double_ext_parent
2023-01-06 17:18:50 +01:00
..
builtin
update logsource
2023-01-04 18:52:24 +01:00
create_remote_thread
Promotion rules (#3821)
2022-12-27 12:29:10 +01:00
create_stream_hash
Fix invalid field cast or name (#3841)
2022-12-30 11:46:21 +01:00
dns_query
Promotion rules (#3821)
2022-12-27 12:29:10 +01:00
driver_load
Fix invalid field cast or name (#3841)
2022-12-30 11:46:21 +01:00
file
feat: updates and enhancements
2023-01-04 17:49:32 +01:00
image_load
Last lolbin (#3845)
2022-12-31 19:53:44 +01:00
network_connection
Fix invalid field cast or name (#3841)
2022-12-30 11:46:21 +01:00
pipe_created
fix: remove unneeded double backslash escape (#3844)
2022-12-31 08:32:46 +01:00
powershell
fix: other typos
2023-01-04 17:53:24 +01:00
process_access
fix: remove unneeded double backslash escape (#3844)
2022-12-31 08:32:46 +01:00
process_creation
Add proc_creation_win_double_ext_parent
2023-01-06 17:18:50 +01:00
raw_access_thread
feat: enhance duplicate test (#3736)
2022-11-29 13:47:09 +01:00
registry
feat: updates and enhancements
2023-01-04 17:49:32 +01:00
sysmon
fix: update modified date
2023-01-03 10:37:09 +01:00
wmi_event
Order yaml field
2022-10-25 12:00:56 +02:00
Powered by Gitea Version: 1.26.1 Page: 480ms Template: 12ms
Auto
English
Bahasa Indonesia Deutsch English Español Français Gaeilge Italiano Latviešu Magyar nyelv Nederlands Polski Português de Portugal Português do Brasil Suomi Svenska Türkçe Čeština Ελληνικά Български Русский Українська فارسی മലയാളം 日本語 简体中文 繁體中文(台灣) 繁體中文(香港) 한국어
Licenses API