Logo
Explore Help
Sign In
security-tools/blue-team-tools
1
0
Fork 0
You've already forked blue-team-tools
Code Issues Pull Requests Actions Packages Projects Releases Wiki Activity
Files
4f36d69eb2e4f6c2af6c7c5cd84142da4bc14d7d
blue-team-tools/rules/windows
T
History
Yamato Security 4f36d69eb2 update Suspicious Export-PfxCertificate rule
2023-05-15 12:00:55 +09:00
..
builtin
Merge pull request #4218 from nasbench/fin7-rules
2023-05-09 16:14:26 +02:00
create_remote_thread
feat: update author and selection
2023-05-05 18:25:07 +02:00
create_stream_hash
more backstab hashes
2023-05-05 13:17:01 +02:00
dns_query
feat: small updates
2023-04-24 23:23:38 +02:00
driver_load
Merge branch 'master' into rule-devel
2023-05-05 10:10:24 +02:00
file
fix: apply suggestions from code review
2023-05-12 10:33:05 +02:00
image_load
Merge pull request #4218 from nasbench/fin7-rules
2023-05-09 16:14:26 +02:00
network_connection
fix: filter names and title
2023-05-09 20:54:55 +02:00
pipe_created
fix: FPs found in different environments
2023-04-20 09:48:47 +02:00
powershell
update Suspicious Export-PfxCertificate rule
2023-05-15 12:00:55 +09:00
process_access
fix: apply suggestions from code review
2023-05-09 16:04:24 +02:00
process_creation
Merge pull request #4218 from nasbench/fin7-rules
2023-05-09 16:14:26 +02:00
raw_access_thread
fix: more fp found in testing
2023-01-18 20:16:34 +01:00
registry
fix: move rule to correct folder
2023-05-11 21:38:39 +02:00
sysmon
fix: typos in multiple rules (#4011)
2023-02-06 13:53:23 +01:00
wmi_event
chore: add nextron authors tag
2023-02-01 11:14:59 +01:00
Powered by Gitea Version: 1.26.1 Page: 438ms Template: 12ms
Auto
English
Bahasa Indonesia Deutsch English Español Français Gaeilge Italiano Latviešu Magyar nyelv Nederlands Polski Português de Portugal Português do Brasil Suomi Svenska Türkçe Čeština Ελληνικά Български Русский Українська فارسی മലയാളം 日本語 简体中文 繁體中文(台灣) 繁體中文(香港) 한국어
Licenses API