Logo
Explore Help
Sign In
security-tools/blue-team-tools
1
0
Fork 0
You've already forked blue-team-tools
Code Issues Pull Requests Actions Packages Projects Releases Wiki Activity
Files
7f18403f514eec895b112ef8a393149e1463d908
blue-team-tools/rules/windows
T
History
Nasreddine Bencherchali 7f18403f51 Merge pull request #4077 from frack113/firewall
feat: add win_firewall_as_add_rule_susp_folder
2023-02-27 21:26:39 +01:00
..
builtin
Merge pull request #4077 from frack113/firewall
2023-02-27 21:26:39 +01:00
create_remote_thread
Update detection
2023-02-26 16:28:46 +01:00
create_stream_hash
fix: change title from domain to wbesites
2023-02-10 10:49:52 +01:00
dns_query
chore: update pipe-notation rules to unsupported
2023-02-24 19:54:14 +01:00
driver_load
fix: typos in multiple rules (#4011)
2023-02-06 13:53:23 +01:00
file
fix: remove pptx:zone
2023-02-24 16:36:14 +01:00
image_load
chore: update pipe-notation rules to unsupported
2023-02-24 19:54:14 +01:00
network_connection
New rules added for LockBit and Reddit used for C2. (#4045)
2023-02-20 12:07:02 +01:00
pipe_created
fix: resolves #4015
2023-02-07 14:33:56 +01:00
powershell
feat: add co-author to posh_pc_abuse_nslookup_with_dns_records.yml (#4079)
2023-02-27 12:16:55 +01:00
process_access
fix: reduce author set
2023-02-01 14:34:46 +01:00
process_creation
feat: update del related detection (#4046)
2023-02-27 15:19:28 +01:00
raw_access_thread
fix: more fp found in testing
2023-01-18 20:16:34 +01:00
registry
fix: change to permalink
2023-02-23 10:47:52 +01:00
sysmon
fix: typos in multiple rules (#4011)
2023-02-06 13:53:23 +01:00
wmi_event
chore: add nextron authors tag
2023-02-01 11:14:59 +01:00
Powered by Gitea Version: 1.26.1 Page: 13ms Template: 7ms
Auto
English
Bahasa Indonesia Deutsch English Español Français Gaeilge Italiano Latviešu Magyar nyelv Nederlands Polski Português de Portugal Português do Brasil Suomi Svenska Türkçe Čeština Ελληνικά Български Русский Українська فارسی മലയാളം 日本語 简体中文 繁體中文(台灣) 繁體中文(香港) 한국어
Licenses API