Logo
Explore Help
Sign In
security-tools/blue-team-tools
1
0
Fork 0
You've already forked blue-team-tools
Code Issues Pull Requests Actions Packages Projects Releases Wiki Activity
Files
87c0788fcaa8cabeff833c79b31af7fc78deb74e
blue-team-tools/rules/windows
T
History
Nasreddine Bencherchali 87c0788fca Update win_security_susp_possible_shadow_credentials_added.yml
2022-10-19 19:04:53 +02:00
..
builtin
Update win_security_susp_possible_shadow_credentials_added.yml
2022-10-19 19:04:53 +02:00
create_remote_thread
fix: filter definition
2022-09-29 14:07:38 +02:00
create_stream_hash
refactor: JuicyPotatoNG imphashes
2022-10-06 08:30:48 +02:00
dns_query
Fix related
2022-10-09 17:28:05 +02:00
driver_load
Update driver_load_vuln_drivers_names.yml
2022-10-17 15:23:14 +02:00
file
New File Access Rules
2022-10-18 11:51:24 +02:00
image_load
Merge pull request #3587 from nasbench/fix-false-positives
2022-10-14 10:22:24 +02:00
network_connection
old experimental rule promotion
2022-10-09 16:54:04 +02:00
pipe_created
Fix FP Found In Testing
2022-10-10 17:33:14 +02:00
powershell
Update posh_ps_using_set_service_to_hide_services.yml
2022-10-18 20:13:45 +02:00
process_access
old experimental rule promotion
2022-10-09 16:54:04 +02:00
process_creation
Add PowerShell version of the rule + Fix rule
2022-10-18 16:03:26 +02:00
raw_access_thread
fix: FPs with THOR
2022-03-15 18:05:42 +01:00
registry
Merge pull request #3594 from SigmaHQ/aurora-false-positive-fixing
2022-10-14 18:02:05 +02:00
sysmon
old experimental rule promotion
2022-10-09 16:54:04 +02:00
wmi_event
old experimental rule promotion
2022-10-09 16:54:04 +02:00
Powered by Gitea Version: 1.26.1 Page: 773ms Template: 6ms
Auto
English
Bahasa Indonesia Deutsch English Español Français Gaeilge Italiano Latviešu Magyar nyelv Nederlands Polski Português de Portugal Português do Brasil Suomi Svenska Türkçe Čeština Ελληνικά Български Русский Українська فارسی മലയാളം 日本語 简体中文 繁體中文(台灣) 繁體中文(香港) 한국어
Licenses API