Logo
Explore Help
Sign In
security-tools/blue-team-tools
1
0
Fork 0
You've already forked blue-team-tools
Code Issues Pull Requests Actions Packages Projects Releases Wiki Activity
Files
fc8c66b3a489c2bbf934fe02f2864eaa5d0454e5
blue-team-tools/rules/windows
T
History
Swachchhanda Poudel fc8c66b3a4 Added detection to detect every possible way of execution through rdrleakdiag
2023-04-24 21:05:57 +05:45
..
builtin
chore: move more rules
2023-04-21 15:01:48 +02:00
create_remote_thread
feat: new rules, updates and fp fixes (#4136)
2023-04-03 12:06:14 +02:00
create_stream_hash
feat: update browsers selections and filters
2023-04-18 18:05:08 +02:00
dns_query
chore: move 3cx related rules
2023-04-21 15:00:35 +02:00
driver_load
feat: rule updates
2023-04-12 02:57:44 +02:00
file
chore: move more rules
2023-04-21 15:01:48 +02:00
image_load
chore: move more rules
2023-04-21 15:01:48 +02:00
network_connection
chore: move 3cx related rules
2023-04-21 15:00:35 +02:00
pipe_created
fix: FPs found in different environments
2023-04-20 09:48:47 +02:00
powershell
Merge pull request #4189 from tuanhxh1/tuan.le.ncs
2023-04-21 11:42:55 +02:00
process_access
feat: new rules, updates and fp fixes (#4162)
2023-04-11 13:04:22 +02:00
process_creation
Added detection to detect every possible way of execution through rdrleakdiag
2023-04-24 21:05:57 +05:45
raw_access_thread
fix: more fp found in testing
2023-01-18 20:16:34 +01:00
registry
fix: apply suggestions from code review
2023-04-19 15:50:29 +02:00
sysmon
fix: typos in multiple rules (#4011)
2023-02-06 13:53:23 +01:00
wmi_event
chore: add nextron authors tag
2023-02-01 11:14:59 +01:00
Powered by Gitea Version: 1.26.1 Page: 1141ms Template: 52ms
Auto
English
Bahasa Indonesia Deutsch English Español Français Gaeilge Italiano Latviešu Magyar nyelv Nederlands Polski Português de Portugal Português do Brasil Suomi Svenska Türkçe Čeština Ελληνικά Български Русский Українська فارسی മലയാളം 日本語 简体中文 繁體中文(台灣) 繁體中文(香港) 한국어
Licenses API