Ruben Groenewoud
fa29e4b2b1
[New Rules] DDExec Analysis (#3408)
* [New Rules] DDExec Analysis
* Increased rule scope
* [New Rule] Dynamic Linker Discovery via od
* Revert "[New Rule] Dynamic Linker Discovery via od"
This reverts commit c58595b77f517d3f236a64a52c38804253db64cc.
* [New Rule] Dynamic Linker Discovery via od
* [New Rule] Potential Memory Seeking Activity
* [New BBR] Suspicious Memory grep Activity
* Added endgame + auditd_manager support
* Removed auditd_manager support for now
* Removed auditd_manager support for now
* Update discovery_suspicious_memory_grep_activity.toml
---------
Co-authored-by: Samirbous <64742097+Samirbous@users.noreply.github.com>
(cherry picked from commit d41855a2ac)
2024-02-06 13:52:48 +00:00
..
2023-12-18 16:07:23 +00:00
2023-12-18 16:07:23 +00:00
2023-12-18 16:07:23 +00:00
2024-01-08 08:55:01 +00:00
2023-12-18 16:07:23 +00:00
2023-12-18 16:07:23 +00:00
2024-01-08 08:55:01 +00:00
2023-12-18 16:07:23 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2024-01-08 08:55:01 +00:00
2024-01-11 12:41:49 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2024-01-08 08:55:01 +00:00
2024-01-08 08:55:01 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2024-02-06 09:54:24 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2024-02-06 13:52:48 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2024-01-08 09:12:16 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2024-02-06 13:52:48 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2024-01-08 09:12:16 +00:00
2024-01-08 09:12:16 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2024-01-08 09:12:16 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2024-01-08 09:12:16 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2023-12-18 08:41:02 +00:00
2023-12-18 08:41:02 +00:00
2024-01-08 09:12:16 +00:00
2024-01-08 09:12:16 +00:00
2023-12-18 08:41:02 +00:00
2023-12-18 08:41:02 +00:00
2023-12-18 08:41:02 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2024-01-17 19:19:45 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2024-02-06 09:34:07 +00:00
2024-02-06 09:34:07 +00:00
2024-01-08 09:21:32 +00:00
2024-01-20 18:41:15 +00:00
2024-01-08 09:21:32 +00:00
2024-01-20 18:41:15 +00:00
2024-01-11 12:41:49 +00:00
2024-01-08 09:21:32 +00:00
2024-01-20 18:41:15 +00:00
2024-01-20 18:41:15 +00:00
2024-01-17 08:40:55 +00:00
2024-01-20 18:41:15 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2024-01-17 19:19:45 +00:00
2023-11-03 13:41:40 +00:00
2024-01-17 19:19:45 +00:00
2024-01-20 18:41:15 +00:00
2024-01-20 18:41:15 +00:00
2024-02-06 09:24:36 +00:00
2024-01-08 09:21:32 +00:00
2024-01-08 09:21:32 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2024-01-22 08:22:54 +00:00
2023-12-07 20:03:34 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2024-01-17 08:52:39 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2024-01-22 15:33:29 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00
2024-01-26 08:41:41 +00:00
2023-11-03 13:41:40 +00:00
2023-12-07 21:29:34 +00:00
2023-11-03 13:41:40 +00:00
2023-11-03 13:41:40 +00:00