This website requires JavaScript.
Explore
Help
Sign In
security-tools
/
blue-team-tools
Watch
1
Star
0
Fork
0
You've already forked blue-team-tools
Code
Issues
Pull Requests
Actions
1
Packages
Projects
Releases
Wiki
Activity
Files
e5cd850640355a32f4cfeaac0355b32477b80098
blue-team-tools
/
rules-unsupported
T
History
yugoslavskiy
738bb4af90
Merge pull request
#1041
from ryanplasma/rplas-SIGMA-547-page-13
...
[OSCD] Add Stored Credentials in Fake Files rule
2021-01-05 22:57:36 +03:00
..
net_dns_high_subdomain_rate.yml
UUIDs + moved unsupported logic
2019-12-19 23:56:36 +01:00
net_dns_large_domain_name.yml
UUIDs + moved unsupported logic
2019-12-19 23:56:36 +01:00
net_possible_dns_rebinding.yml
UUIDs + moved unsupported logic
2019-12-19 23:56:36 +01:00
sysmon_always_install_elevated_parent_child_correlated.yml
[OSCD] Always Install Elevated
2020-10-15 21:59:37 -04:00
sysmon_process_reimaging.yml
All Rules use 'TargetFilename' instead of 'TargetFileName'.
2020-06-03 09:00:59 +02:00
win_access_fake_files_with_stored_credentials.yml
Replace start of paths with placeholders
2020-10-17 09:36:25 -04:00
win_dumping_ntdsdit_via_dcsync.yml
UUIDs + moved unsupported logic
2019-12-19 23:56:36 +01:00
win_dumping_ntdsdit_via_netsync.yml
UUIDs + moved unsupported logic
2019-12-19 23:56:36 +01:00
win_remote_schtask.yml
Added selection criteria + moved to Unsupported rule
2020-10-11 12:48:48 +10:30
win_remote_service.yml
Added conditional description + moved to unsupported-rules
2020-10-11 12:40:24 +10:30