Logo
Explore Help
Sign In
security-tools/blue-team-tools
1
0
Fork 0
You've already forked blue-team-tools
Code Issues Pull Requests Actions Packages Projects Releases Wiki Activity
Files
90aeea92bf0b1cbe6a3740591b7f9f8ae656efd2
blue-team-tools/rules/windows
T
History
frack113 90aeea92bf Merge pull request #3615 from YamatoSecurity/update-win_audit_cve-rule
update win_audit_cve rule
2022-10-22 09:50:26 +02:00
..
builtin
Merge pull request #3615 from YamatoSecurity/update-win_audit_cve-rule
2022-10-22 09:50:26 +02:00
create_remote_thread
fix: filter definition
2022-09-29 14:07:38 +02:00
create_stream_hash
refactor: JuicyPotatoNG imphashes
2022-10-06 08:30:48 +02:00
dns_query
Fix related
2022-10-09 17:28:05 +02:00
driver_load
Add New Vuln Driver
2022-10-20 11:55:36 +02:00
file
Update Hacktool Rules
2022-10-20 11:55:59 +02:00
image_load
fix: FPs in testing in connection to Aurora
2022-10-21 17:29:34 +02:00
network_connection
old experimental rule promotion
2022-10-09 16:54:04 +02:00
pipe_created
Fix FP Found In Testing
2022-10-10 17:33:14 +02:00
powershell
Update and rename posh_ps_copy_item_system32.yml to posh_ps_copy_item_system_directory.yml
2022-10-20 14:31:48 +05:00
process_access
Merge pull request #3611 from nasbench/fix-false-positives
2022-10-21 18:11:27 +02:00
process_creation
Merge pull request #3611 from nasbench/fix-false-positives
2022-10-21 18:11:27 +02:00
raw_access_thread
fix: FPs with THOR
2022-03-15 18:05:42 +01:00
registry
Merge pull request #3619 from phantinuss/master
2022-10-21 18:30:48 +02:00
sysmon
old experimental rule promotion
2022-10-09 16:54:04 +02:00
wmi_event
old experimental rule promotion
2022-10-09 16:54:04 +02:00
Powered by Gitea Version: 1.26.1 Page: 897ms Template: 12ms
Auto
English
Bahasa Indonesia Deutsch English Español Français Gaeilge Italiano Latviešu Magyar nyelv Nederlands Polski Português de Portugal Português do Brasil Suomi Svenska Türkçe Čeština Ελληνικά Български Русский Українська فارسی മലയാളം 日本語 简体中文 繁體中文(台灣) 繁體中文(香港) 한국어
Licenses API