This website requires JavaScript.
Explore
Help
Sign In
security-tools
/
blue-team-tools
Watch
1
Star
0
Fork
0
You've already forked blue-team-tools
Code
Issues
Pull Requests
Actions
Packages
Projects
Releases
Wiki
Activity
Files
dca48fc125b052c75fb2a26319cc32c2da1ec6a3
blue-team-tools
/
rules
/
windows
T
History
Nasreddine Bencherchali
e7a2e1c169
fix: remove version from name
...
Co-authored-by: frack113 <
62423083+frack113@users.noreply.github.com
>
2023-01-12 10:37:34 +01:00
..
builtin
fix: remove version from name
2023-01-12 10:37:34 +01:00
create_remote_thread
Promotion rules (
#3821
)
2022-12-27 12:29:10 +01:00
create_stream_hash
Fix invalid field cast or name (
#3841
)
2022-12-30 11:46:21 +01:00
dns_query
feat: more updates and fixes
2023-01-12 01:05:48 +01:00
driver_load
fix: remove duplicate entries
2023-01-11 16:34:03 +01:00
file
feat: updates and enhancements
2023-01-10 00:13:37 +01:00
image_load
Update image_load_side_load_non_existent_dlls.yml
2023-01-10 10:41:48 +01:00
network_connection
feat: updates and enhancements
2023-01-10 00:13:37 +01:00
pipe_created
fix: remove unneeded double backslash escape (
#3844
)
2022-12-31 08:32:46 +01:00
powershell
fix: fp and add related fields
2023-01-11 23:39:15 +01:00
process_access
fix: fp found in testing
2023-01-11 20:05:55 +01:00
process_creation
feat: more updates and fixes
2023-01-12 01:05:48 +01:00
raw_access_thread
feat: enhance duplicate test (
#3736
)
2022-11-29 13:47:09 +01:00
registry
fix: apply suggestions from code review
2023-01-12 10:36:13 +01:00
sysmon
fix: update modified date
2023-01-03 10:37:09 +01:00
wmi_event
Order yaml field
2022-10-25 12:00:56 +02:00