Logo
Explore Help
Sign In
security-tools/blue-team-tools
1
0
Fork 0
You've already forked blue-team-tools
Code Issues Pull Requests Actions Packages Projects Releases Wiki Activity
Files
6de42e0996200d8ae87533d7070b8a66bcb68fcc
blue-team-tools/rules/windows
T
History
frack113 6de42e0996 Update proc_creation_win_sqlite_firefox_gecko_profile_data.yml
2023-01-20 09:57:09 +01:00
..
builtin
fix: final fp
2023-01-19 00:49:32 +01:00
create_remote_thread
Promotion rules (#3821)
2022-12-27 12:29:10 +01:00
create_stream_hash
Fix invalid field cast or name (#3841)
2022-12-30 11:46:21 +01:00
dns_query
feat: new rules and updates
2023-01-17 01:00:44 +01:00
driver_load
fix: remove duplicate entries
2023-01-11 16:34:03 +01:00
file
fix: fp found in testing
2023-01-18 18:41:07 +01:00
image_load
Update image_load_side_load_non_existent_dlls.yml
2023-01-10 10:41:48 +01:00
network_connection
fix: fp found in testing
2023-01-18 18:41:07 +01:00
pipe_created
fix: remove unneeded double backslash escape (#3844)
2022-12-31 08:32:46 +01:00
powershell
fix: fp and broken field name
2023-01-18 10:47:40 +01:00
process_access
fix: FP found in testing environment
2023-01-19 16:49:12 +01:00
process_creation
Update proc_creation_win_sqlite_firefox_gecko_profile_data.yml
2023-01-20 09:57:09 +01:00
raw_access_thread
fix: more fp found in testing
2023-01-18 20:16:34 +01:00
registry
fix: small metadata fixes
2023-01-18 23:30:40 +01:00
sysmon
fix: update modified date
2023-01-03 10:37:09 +01:00
wmi_event
Order yaml field
2022-10-25 12:00:56 +02:00
Powered by Gitea Version: 1.26.1 Page: 411ms Template: 11ms
Auto
English
Bahasa Indonesia Deutsch English Español Français Gaeilge Italiano Latviešu Magyar nyelv Nederlands Polski Português de Portugal Português do Brasil Suomi Svenska Türkçe Čeština Ελληνικά Български Русский Українська فارسی മലയാളം 日本語 简体中文 繁體中文(台灣) 繁體中文(香港) 한국어
Licenses API