Logo
Explore Help
Sign In
security-tools/blue-team-tools
1
0
Fork 0
You've already forked blue-team-tools
Code Issues Pull Requests Actions Packages Projects Releases Wiki Activity
Files
ced1aa3dc05bc6dca3ebac9db94a4f5ea2f06e54
blue-team-tools/rules/windows
T
History
frack113 ffbeec134d Update image_load_wmiprvse_wbemcomn_dll_hijack.yml
2021-09-09 19:56:20 +02:00
..
builtin
Merge pull request #2001 from SigmaHQ/rule-devel
2021-09-08 09:09:58 +02:00
create_remote_thread
…
create_stream_hash
…
deprecated
…
dns_query
Split global sysmon rules
2021-09-09 16:11:41 +02:00
driver_load
…
file_delete
…
file_event
Split global sysmon rules
2021-09-09 16:11:41 +02:00
image_load
Update image_load_wmiprvse_wbemcomn_dll_hijack.yml
2021-09-09 19:56:20 +02:00
malware
Update global ID
2021-09-02 21:16:55 +02:00
network_connection
update global id
2021-09-02 21:03:25 +02:00
other
Merge pull request #1979 from frack113/test_global
2021-09-06 08:44:14 +02:00
pipe_created
Various fixes
2021-09-07 23:38:07 +02:00
powershell
Merge pull request #2000 from frack113/split_global
2021-09-08 06:26:35 +02:00
process_access
Various fixes
2021-09-07 23:38:07 +02:00
process_creation
Split global sysmon rules
2021-09-09 16:11:41 +02:00
raw_access_thread
…
registry_event
Split global sysmon rules
2021-09-09 16:11:41 +02:00
sysmon
Split global sysmon rules
2021-09-09 16:11:41 +02:00
wmi_event
fix: tags for WMI / execution / persistence
2021-09-01 16:34:50 +02:00
Powered by Gitea Version: 1.26.1 Page: 1794ms Template: 60ms
Auto
English
Bahasa Indonesia Deutsch English Español Français Gaeilge Italiano Latviešu Magyar nyelv Nederlands Polski Português de Portugal Português do Brasil Suomi Svenska Türkçe Čeština Ελληνικά Български Русский Українська فارسی മലയാളം 日本語 简体中文 繁體中文(台灣) 繁體中文(香港) 한국어
Licenses API