Files
blue-team-tools/rules/windows
phantinuss 7f030b250e fix: wrong mapping of Windows Audit Log EventID 4688
reverts some changes introduced by commit c5fa73c328
    - removes the unnecessary/wrong field mapping
    - fixes the rules to apply to CommandLine instead of
      ParentCommandLine as the author probably intended
2022-03-30 11:24:24 +02:00
..
2022-03-16 13:43:54 +01:00
2022-03-16 13:43:54 +01:00
2022-03-15 18:05:42 +01:00
2022-03-26 16:57:58 +01:00
2022-03-26 12:02:37 +01:00
2022-03-29 19:46:45 +02:00
2022-03-16 14:35:19 +01:00
2022-01-19 18:23:30 +01:00