Files
blue-team-tools/rules/linux/process_creation
David Hazekamp bc26970596 fix(rule): lnx_dd_file_overwrite /bin symlinks
This rule is subject to false negatives for *nix distros which
alias /bin to /usr/bin.  By using endswith we can catch dd usage
for either /bin or /usr/bin.
2022-06-06 09:27:27 -05:00
..
2022-05-26 18:39:42 +02:00