Logo
Explore Help
Sign In
security-tools/blue-team-tools
1
0
Fork 0
You've already forked blue-team-tools
Code Issues Pull Requests Actions Packages Projects Releases Wiki Activity
Files
6280845d0ef724406f2f9bd2fb7e01fcb63ad58e
blue-team-tools/rules/windows
T
History
phantinuss 543e377789 fix: FP wiht opera
2023-05-30 12:21:29 +02:00
..
builtin
fix: FP wiht opera
2023-05-30 12:21:29 +02:00
create_remote_thread
feat: update author and selection
2023-05-05 18:25:07 +02:00
create_stream_hash
feat: add more extensions and fix metadata
2023-05-18 22:55:18 +02:00
dns_query
fix: FPs in testing environment
2023-05-23 12:24:01 +02:00
driver_load
feat: new rules, updates and goofy guineapig stuff (#4229)
2023-05-15 15:53:39 +02:00
file
Merge pull request #4250 from SigmaHQ/rule-devel
2023-05-19 09:23:12 +02:00
image_load
fix: FPs in testing environment
2023-05-23 12:24:01 +02:00
network_connection
feat: add new rules related to small sieve
2023-05-19 02:34:01 +02:00
pipe_created
fix: FPs found in different environments
2023-04-20 09:48:47 +02:00
powershell
Merge pull request #4236 from YamatoSecurity/update-Suspicious-Export-PfxCertificate
2023-05-19 09:19:10 +02:00
process_access
fix: rule using old wildcard char
2023-05-18 12:30:29 +02:00
process_creation
feat: apply suggestions from code review
2023-05-30 11:17:52 +02:00
raw_access_thread
feat: new rules, updates and goofy guineapig stuff (#4229)
2023-05-15 15:53:39 +02:00
registry
feat: update more regsvr32
2023-05-26 15:59:30 +02:00
sysmon
fix: typos in multiple rules (#4011)
2023-02-06 13:53:23 +01:00
wmi_event
chore: add nextron authors tag
2023-02-01 11:14:59 +01:00
Powered by Gitea Version: 1.26.1 Page: 298ms Template: 8ms
Auto
English
Bahasa Indonesia Deutsch English Español Français Gaeilge Italiano Latviešu Magyar nyelv Nederlands Polski Português de Portugal Português do Brasil Suomi Svenska Türkçe Čeština Ελληνικά Български Русский Українська فارسی മലയാളം 日本語 简体中文 繁體中文(台灣) 繁體中文(香港) 한국어
Licenses API