Files
blue-team-tools/rules
phantinuss 7f030b250e fix: wrong mapping of Windows Audit Log EventID 4688
reverts some changes introduced by commit c5fa73c328
    - removes the unnecessary/wrong field mapping
    - fixes the rules to apply to CommandLine instead of
      ParentCommandLine as the author probably intended
2022-03-30 11:24:24 +02:00
..
2022-01-19 18:23:30 +01:00
2022-03-24 11:40:51 +01:00
2022-03-24 15:17:29 +01:00
2022-01-19 18:23:30 +01:00