This website requires JavaScript.
Explore
Help
Sign In
security-tools
/
blue-team-tools
Watch
1
Star
0
Fork
0
You've already forked blue-team-tools
Code
Issues
Pull Requests
Actions
1
Packages
Projects
Releases
Wiki
Activity
Files
e5cd850640355a32f4cfeaac0355b32477b80098
blue-team-tools
/
rules
/
windows
/
sysmon
T
History
Florian Roth
e5cd850640
Merge pull request
#1556
from frack113/PR_617_V2
...
Fix all the rules to pass the test
2021-06-16 08:22:51 +02:00
..
sysmon_abusing_windows_telemetry_for_persistence.yml
Fix all the rules to pass the test
2021-06-14 07:33:26 +02:00
sysmon_accessing_winapi_in_powershell_credentials_dumping.yml
Merge branch 'master' into falsepositives_NOT_a_list
2021-05-27 10:23:19 +02:00
sysmon_config_modification.yml
convert eventID to category
2021-06-10 16:36:14 +02:00
sysmon_dcom_iertutil_dll_hijack.yml
update - GitHub Action / Test Sigma
2020-10-12 21:58:02 -04:00
sysmon_dns_hybridconnectionmgr_servicebus.yml
Convert eventID 22 to category dns_query
2021-06-10 16:43:33 +02:00
sysmon_pingback_backdoor.yml
Fixed too many spaces after hyphen error
2021-05-05 12:48:29 +05:45
sysmon_wmiprvse_wbemcomn_dll_hijack.yml
forget to add modified
2021-06-10 17:27:15 +02:00