Files
blue-team-tools/rules/windows/process_creation
yugoslavskiy 82f23c5f63 Merge pull request #477 from zinint/oscd
add 13 new rules:

- rules/linux/auditd/lnx_auditd_masquerading_crond.yml 
- rules/linux/auditd/lnx_auditd_user_discovery.yml 
- rules/linux/auditd/lnx_data_compressed.yml 
- rules/linux/auditd/lnx_network_sniffing.yml 
- rules/windows/powershell/powershell_data_compressed.yml 
- rules/windows/powershell/powershell_winlogon_helper_dll.yml 
- rules/windows/process_creation/win_change_default_file_association.yml 
- rules/windows/process_creation/win_data_compressed_with_rar.yml 
- rules/windows/process_creation/win_local_system_owner_account_discovery.yml 
- rules/windows/process_creation/win_network_sniffing.yml 
- rules/windows/process_creation/win_query_registry.yml 
- rules/windows/process_creation/win_service_execution.yml 
- rules/windows/process_creation/win_xsl_script_processing.yml 

modify 1 rule:

- rules/windows/process_creation/win_possible_applocker_bypass.yml
2019-11-05 04:55:29 +03:00
..
2019-03-06 00:02:37 +01:00
2019-08-23 23:19:39 +02:00
2019-06-13 23:15:38 -05:00
2019-03-06 06:18:38 +01:00
2019-03-06 00:16:40 +01:00
2019-03-02 00:14:20 +01:00
2019-03-06 05:25:12 +01:00
2019-03-06 00:16:40 +01:00
2019-06-13 23:15:38 -05:00
2019-03-16 00:37:09 +01:00
2019-06-13 23:15:38 -05:00
2019-03-06 00:16:40 +01:00
2019-06-13 23:15:38 -05:00
2019-06-13 23:15:38 -05:00
2019-03-02 00:14:20 +01:00
2019-11-04 22:49:28 +03:00
2019-03-06 05:57:01 +01:00
2019-11-04 22:49:28 +03:00
2019-03-06 00:16:40 +01:00
2019-06-13 23:15:38 -05:00
2019-03-02 00:14:20 +01:00
2019-11-04 22:49:28 +03:00
2019-11-04 22:49:28 +03:00
2019-11-04 22:49:28 +03:00
2019-03-06 05:25:12 +01:00
2019-03-06 05:25:12 +01:00
2019-11-04 22:49:28 +03:00
2019-11-04 22:49:28 +03:00
2019-11-04 22:49:28 +03:00
2019-03-06 00:16:40 +01:00
2019-10-14 17:26:33 +02:00
2019-09-04 11:31:00 -04:00
2019-03-06 05:25:12 +01:00
2019-06-13 23:15:38 -05:00
2019-05-09 23:09:22 +02:00
2019-06-13 23:15:38 -05:00
2019-03-06 05:25:12 +01:00
2019-03-06 05:25:12 +01:00
2019-06-13 23:15:38 -05:00
2019-04-04 22:32:47 +02:00