This website requires JavaScript.
Explore
Help
Sign In
security-tools
/
blue-team-tools
Watch
1
Star
0
Fork
0
You've already forked blue-team-tools
Code
Issues
Pull Requests
Actions
Packages
Projects
Releases
Wiki
Activity
Files
feb836cbf2833dfc714e5e63763809d20f7aacf3
blue-team-tools
/
rules
/
windows
/
powershell
T
History
Thomas Patzke
f4e9690d6b
Merge pull request
#508
from Karneades/fixRule3
...
fix: bound keywords to field in multiple PS rules
2019-10-29 22:34:08 +01:00
..
powershell_downgrade_attack.yml
Tagged windows powershell, other and malware rules.
2018-07-24 10:56:41 +02:00
powershell_exe_calling_ps.yml
Tagged windows powershell, other and malware rules.
2018-07-24 10:56:41 +02:00
powershell_malicious_commandlets.yml
fix: bound keywords to field in multiple PS rules
2019-10-29 19:53:18 +01:00
powershell_malicious_keywords.yml
fix: bound keywords to field in multiple PS rules
2019-10-29 19:53:18 +01:00
powershell_ntfs_ads_access.yml
Merge branch 'master' of
https://github.com/SherifEldeeb/sigma
into SherifEldeeb-master
2018-12-04 23:35:23 +01:00
powershell_prompt_credentials.yml
fix: bound keywords to field in PS cred prompt rule
2019-10-29 19:43:04 +01:00
powershell_psattack.yml
fixed typos
2019-06-29 15:35:59 +03:00
powershell_shellcode_b64.yml
Added missing tags and some minor improvements
2019-03-05 23:25:49 +01:00
powershell_suspicious_download.yml
fix: bound keywords to field in multiple PS rules
2019-10-29 19:53:18 +01:00
powershell_suspicious_invocation_generic.yml
Tagged windows powershell, other and malware rules.
2018-07-24 10:56:41 +02:00
powershell_suspicious_invocation_specific.yml
fix: bound keywords to field in multiple PS rules
2019-10-29 19:53:18 +01:00
powershell_suspicious_keywords.yml
fix: change keyword and bound it to a field
2019-10-29 19:59:43 +01:00