This website requires JavaScript.
Explore
Help
Sign In
security-tools
/
blue-team-tools
Watch
1
Star
0
Fork
0
You've already forked blue-team-tools
Code
Issues
Pull Requests
Actions
Packages
Projects
Releases
Wiki
Activity
Files
b157bef3de27d23e219201d2b644f47f2e87f813
blue-team-tools
/
rules
/
windows
T
History
Florian Roth
9372987801
fix: missing upper tick
...
Co-authored-by: frack113 <
62423083+frack113@users.noreply.github.com
>
2022-12-21 08:57:37 +01:00
..
builtin
feat: add two new rules
2022-12-20 23:44:44 +01:00
create_remote_thread
fix:
fix
#2479
2022-12-21 00:11:04 +01:00
create_stream_hash
Merge pull request
#3757
from SigmaHQ/aurora-false-positive-fixing
2022-12-05 18:54:31 +01:00
dns_query
Update title (
#3734
)
2022-11-29 07:36:45 +01:00
driver_load
feat: updates and enhancements
2022-12-16 16:52:12 +01:00
file
Merge branch 'SigmaHQ:master' into nasbench-rule-devel
2022-12-20 22:24:56 +01:00
image_load
fix: rename files to fit logic
2022-12-19 19:28:23 +01:00
network_connection
fix: remove unnecessary definition
2022-12-18 15:24:58 +01:00
pipe_created
refactor: remove unnesessary escape.
2022-12-03 21:56:00 +09:00
powershell
fix: enhance logic and severity
2022-12-19 11:21:24 +01:00
process_access
fix: fp found in testing exchange server
2022-12-20 13:23:32 +01:00
process_creation
fix: missing upper tick
2022-12-21 08:57:37 +01:00
raw_access_thread
feat: enhance duplicate test (
#3736
)
2022-11-29 13:47:09 +01:00
registry
feat: add more suspicious cases
2022-12-21 00:18:44 +01:00
sysmon
Refractor (
#3794
)
2022-12-18 21:00:14 +01:00
wmi_event
Order yaml field
2022-10-25 12:00:56 +02:00