This website requires JavaScript.
Explore
Help
Sign In
security-tools
/
blue-team-tools
Watch
1
Star
0
Fork
0
You've already forked blue-team-tools
Code
Issues
Pull Requests
Actions
Packages
Projects
Releases
Wiki
Activity
Files
f9dbb1f41387ee1e9c56d2bfa9b25fff15bacc2a
blue-team-tools
/
rules
/
windows
T
History
frack113
f9dbb1f413
Add proc_creation_win_findstr_susp_parent
...
Signed-off-by: frack113 <
62423083+frack113@users.noreply.github.com
>
2023-07-06 19:51:47 +02:00
..
builtin
fix:F multiple 404 links in references (
#4332
)
2023-06-26 10:10:04 +01:00
create_remote_thread
feat: update author and selection
2023-05-05 18:25:07 +02:00
create_stream_hash
fix: fp found in testing
2023-06-14 00:23:28 +02:00
dns_query
feat: typo fix and remote access software rule update (
#4313
)
2023-06-15 11:18:20 +02:00
driver_load
feat: new rules, updates and goofy guineapig stuff (
#4229
)
2023-05-15 15:53:39 +02:00
file
fix:F multiple 404 links in references (
#4332
)
2023-06-26 10:10:04 +01:00
image_load
fix:F multiple 404 links in references (
#4332
)
2023-06-26 10:10:04 +01:00
network_connection
feat: update clickonce rules
2023-06-12 23:52:40 +02:00
pipe_created
fix:F multiple 404 links in references (
#4332
)
2023-06-26 10:10:04 +01:00
powershell
fix:F multiple 404 links in references (
#4332
)
2023-06-26 10:10:04 +01:00
process_access
fix:F multiple 404 links in references (
#4332
)
2023-06-26 10:10:04 +01:00
process_creation
Add proc_creation_win_findstr_susp_parent
2023-07-06 19:51:47 +02:00
raw_access_thread
feat: new rules, updates and goofy guineapig stuff (
#4229
)
2023-05-15 15:53:39 +02:00
registry
fix: FP found with excel
2023-06-28 10:33:19 +02:00
sysmon
fix: typos in multiple rules (
#4011
)
2023-02-06 13:53:23 +01:00
wmi_event
chore: add nextron authors tag
2023-02-01 11:14:59 +01:00