This website requires JavaScript.
Explore
Help
Sign In
security-tools
/
blue-team-tools
Watch
1
Star
0
Fork
0
You've already forked blue-team-tools
Code
Issues
Pull Requests
Actions
Packages
Projects
Releases
Wiki
Activity
Files
b755d4fb6818dac5807ca582adbd67fe7e4f4649
blue-team-tools
/
rules
/
windows
T
History
yugoslavskiy
b755d4fb68
Update and rename win_system_owner_user_discovery.yml to win_local_system_owner_account_discovery.yml
2019-11-05 02:31:20 +03:00
..
builtin
rule: mimikatz use extended
2019-10-11 18:50:33 +02:00
malware
rules: AV rules updated to reflect 1.7.2 auf AV cheat sheet
2019-10-04 16:17:34 +02:00
other
Converted to use the new process_creation data source
2019-03-09 20:57:59 +03:00
powershell
Delete powershell_network_sniffing.yml
2019-11-04 23:46:43 +03:00
process_creation
Update and rename win_system_owner_user_discovery.yml to win_local_system_owner_account_discovery.yml
2019-11-05 02:31:20 +03:00
sysmon
Delete sysmon_xsl_script_processing.yml
2019-11-04 23:47:23 +03:00