Logo
Explore Help
Sign In
security-tools/blue-team-tools
1
0
Fork 0
You've already forked blue-team-tools
Code Issues Pull Requests Actions Packages Projects Releases Wiki Activity
Files
941d02dbe50eb4fcb6099433e2d0f7cb01418504
blue-team-tools/rules/windows
T
History
phantinuss 941d02dbe5 fix: FPs found in production environment
2023-04-27 16:40:07 +02:00
..
builtin
fix: FPs found in production environment
2023-04-27 16:40:07 +02:00
create_remote_thread
feat: new rules, updates and fp fixes (#4136)
2023-04-03 12:06:14 +02:00
create_stream_hash
feat: update browsers selections and filters
2023-04-18 18:05:08 +02:00
dns_query
feat: small updates
2023-04-24 23:23:38 +02:00
driver_load
feat: rule updates
2023-04-12 02:57:44 +02:00
file
chore: move more rules
2023-04-21 15:01:48 +02:00
image_load
chore: move more rules
2023-04-21 15:01:48 +02:00
network_connection
feat: new rule Suspicious Network Connection to IP Lookup Service APIs
2023-04-24 17:30:57 +02:00
pipe_created
fix: FPs found in different environments
2023-04-20 09:48:47 +02:00
powershell
feat: new rule for Rubeus in pwsh scriptblock log
2023-04-27 16:39:17 +02:00
process_access
fix: typo in field
2023-04-26 13:22:01 +02:00
process_creation
feat: new rule for Rubeus in pwsh scriptblock log
2023-04-27 16:39:17 +02:00
raw_access_thread
fix: more fp found in testing
2023-01-18 20:16:34 +01:00
registry
fix: apply suggestions from code review
2023-04-19 15:50:29 +02:00
sysmon
fix: typos in multiple rules (#4011)
2023-02-06 13:53:23 +01:00
wmi_event
chore: add nextron authors tag
2023-02-01 11:14:59 +01:00
Powered by Gitea Version: 1.26.1 Page: 800ms Template: 13ms
Auto
English
Bahasa Indonesia Deutsch English Español Français Gaeilge Italiano Latviešu Magyar nyelv Nederlands Polski Português de Portugal Português do Brasil Suomi Svenska Türkçe Čeština Ελληνικά Български Русский Українська فارسی മലയാളം 日本語 简体中文 繁體中文(台灣) 繁體中文(香港) 한국어
Licenses API