Files
blue-team-tools/rules/windows
Nasreddine Bencherchali f0e05ccb3c Rule Update (Batch 2)
- Added 5 more PowerShell scripts for the rule "file_event_win_powershell_exploit_scripts.yml"
- Created new rule for "certoc" lolbin to cover "Download" option as described in the LOLBAS project
- Created specific rule for the "IEExec" lolbin to cover "Download" option as described in the LOLBAS Project
- Updated some rules to use "OriginalFileName" in addition to the "Image" selection
- Updated some rules to increase coverage.
2022-05-16 22:02:41 +01:00
..
2022-04-04 10:57:23 +02:00
2022-05-01 11:34:54 +02:00
2022-03-16 13:43:54 +01:00
2022-05-16 22:02:41 +01:00
2022-05-13 15:28:22 +01:00
2022-05-14 09:42:32 +02:00
2022-05-14 09:42:32 +02:00
2022-05-16 22:02:41 +01:00
2022-03-15 18:05:42 +01:00
2022-05-14 09:42:32 +02:00