Logo
Explore Help
Sign In
security-tools/blue-team-tools
1
0
Fork 0
You've already forked blue-team-tools
Code Issues Pull Requests Actions Packages Projects Releases Wiki Activity
Files
961aebb8ef03ea9a141ec78cd0ed439ea8d6bcea
blue-team-tools/rules/windows
T
History
phantinuss 6a88ece238 fix: adapt level to high
Co-authored-by: Nasreddine Bencherchali <8741929+nasbench@users.noreply.github.com>
2023-04-27 16:59:35 +02:00
..
builtin
fix: FPs found in production environment
2023-04-27 16:40:07 +02:00
create_remote_thread
feat: new rules, updates and fp fixes (#4136)
2023-04-03 12:06:14 +02:00
create_stream_hash
feat: update browsers selections and filters
2023-04-18 18:05:08 +02:00
dns_query
feat: small updates
2023-04-24 23:23:38 +02:00
driver_load
feat: rule updates
2023-04-12 02:57:44 +02:00
file
chore: move more rules
2023-04-21 15:01:48 +02:00
image_load
chore: move more rules
2023-04-21 15:01:48 +02:00
network_connection
feat: new rule Suspicious Network Connection to IP Lookup Service APIs
2023-04-24 17:30:57 +02:00
pipe_created
fix: FPs found in different environments
2023-04-20 09:48:47 +02:00
powershell
fix: adapt level to high
2023-04-27 16:59:35 +02:00
process_access
fix: typo in field
2023-04-26 13:22:01 +02:00
process_creation
feat: new rule for Rubeus in pwsh scriptblock log
2023-04-27 16:39:17 +02:00
raw_access_thread
fix: more fp found in testing
2023-01-18 20:16:34 +01:00
registry
fix: apply suggestions from code review
2023-04-19 15:50:29 +02:00
sysmon
fix: typos in multiple rules (#4011)
2023-02-06 13:53:23 +01:00
wmi_event
chore: add nextron authors tag
2023-02-01 11:14:59 +01:00
Powered by Gitea Version: 1.26.1 Page: 471ms Template: 9ms
Auto
English
Bahasa Indonesia Deutsch English Español Français Gaeilge Italiano Latviešu Magyar nyelv Nederlands Polski Português de Portugal Português do Brasil Suomi Svenska Türkçe Čeština Ελληνικά Български Русский Українська فارسی മലയാളം 日本語 简体中文 繁體中文(台灣) 繁體中文(香港) 한국어
Licenses API