Files
blue-team-tools/tools/config
redsand (Tim Shelton) bc334ab456 Hawk backend support for wildcard in middle of string (#2273)
* updating yaml cfg for ms eventlog support

* update config and sigma backend, so that comments are not replaced, but rather the details of the record

* updating scriptblocktext to value

* adding a few missing ip address translations

* Fixing error when handling comparisons of null values, and additional fix of lack of support for not

* adding additional translations for missing category entries

* fixing error when handling list of ors with a not indicator

* finishes support for windows translations, pending qa

* adding dedupe feature and additional translation fix for dns-server

* adding image_loaded translation

* forced to pull back on the aggressive deduping, caused some inaccuracies

* adding more ux friendly formatting for regex

* adds support for wildcards in middle of strings

* adding a missing null check for supporting null matching

* adding cisco, av, and django cfg in yaml. updated apache in yaml and added another translation for ip_dport
2021-11-18 06:29:41 +01:00
..
2021-11-10 19:12:51 +01:00
2021-07-16 23:08:03 +05:00
2021-08-24 16:01:23 -04:00
2020-07-13 20:41:54 +00:00
2021-09-18 15:55:01 +02:00
2021-09-18 15:54:08 +02:00
2021-09-18 15:54:08 +02:00
2021-09-18 15:54:08 +02:00
2021-09-14 01:52:03 -05:00
2021-07-17 04:55:46 +05:00
2021-11-09 13:38:31 +02:00
2020-02-28 16:56:48 +07:00
2021-07-26 21:26:16 -04:00
2020-02-28 16:56:48 +07:00
2020-06-05 13:18:03 -04:00
2020-02-28 16:56:48 +07:00
2021-10-16 22:49:20 +02:00
2020-10-06 15:07:52 +03:00
2021-07-22 10:18:03 +02:00