This website requires JavaScript.
Explore
Help
Sign In
security-tools
/
blue-team-tools
Watch
1
Star
0
Fork
0
You've already forked blue-team-tools
Code
Issues
Pull Requests
Actions
Packages
Projects
Releases
Wiki
Activity
Files
914aa4ee3153185b400e72d0107ce2c5ffbd307c
blue-team-tools
/
rules
/
windows
/
sysmon
T
History
Florian Roth
072a9d73eb
fix: changes to existing rules
2022-09-13 08:07:03 +02:00
..
sysmon_accessing_winapi_in_powershell_credentials_dumping.yml
New Rules + Update
2022-07-14 17:35:50 +01:00
sysmon_config_modification_error.yml
Reference Update [Batch 1]
2022-07-07 15:24:15 +01:00
sysmon_config_modification_status.yml
Filter start
2022-08-02 10:42:03 +02:00
sysmon_config_modification.yml
fix: legitimate --> Legitimate
2022-03-16 14:35:19 +01:00
sysmon_dcom_iertutil_dll_hijack.yml
Updated rules with modifiers instead of '*' and remove trailing '\\'
2021-06-27 14:51:29 +02:00
sysmon_file_block_exe.yml
fix: changes to existing rules
2022-09-13 08:07:03 +02:00
sysmon_process_hollowing.yml
Update filter
2022-02-02 06:34:32 +01:00