Ruben Groenewoud
fa29e4b2b1
[New Rules] DDExec Analysis (#3408)
* [New Rules] DDExec Analysis
* Increased rule scope
* [New Rule] Dynamic Linker Discovery via od
* Revert "[New Rule] Dynamic Linker Discovery via od"
This reverts commit c58595b77f517d3f236a64a52c38804253db64cc.
* [New Rule] Dynamic Linker Discovery via od
* [New Rule] Potential Memory Seeking Activity
* [New BBR] Suspicious Memory grep Activity
* Added endgame + auditd_manager support
* Removed auditd_manager support for now
* Removed auditd_manager support for now
* Update discovery_suspicious_memory_grep_activity.toml
---------
Co-authored-by: Samirbous <64742097+Samirbous@users.noreply.github.com>
(cherry picked from commit d41855a2ac)
2024-02-06 13:52:48 +00:00
..
2023-06-20 09:00:30 -04:00
2023-08-29 12:16:12 +00:00
2024-02-05 15:52:27 +00:00
2023-10-15 21:18:03 +00:00
2024-01-17 19:19:45 +00:00
2023-09-05 21:14:06 +00:00
2023-10-30 11:28:47 +00:00
2023-09-05 21:14:06 +00:00
2023-12-08 18:59:26 +00:00
2024-01-24 15:35:25 +00:00
2023-12-18 16:07:23 +00:00
2023-12-18 16:07:23 +00:00
2023-12-18 16:07:23 +00:00
2023-08-31 15:47:30 +00:00
2024-02-05 15:52:27 +00:00
2023-10-17 12:41:28 +00:00
2024-02-05 15:52:27 +00:00
2023-10-15 21:18:03 +00:00
2023-08-29 11:55:07 +00:00
2023-10-17 14:42:54 +00:00
2023-10-15 21:18:03 +00:00
2023-09-05 18:28:40 +00:00
2023-10-15 21:18:03 +00:00
2023-10-17 11:35:05 +00:00
2023-10-17 14:42:54 +00:00
2023-09-27 15:43:02 +00:00
2023-10-17 16:55:50 +00:00
2023-09-05 18:28:40 +00:00
2023-09-05 18:28:40 +00:00
2023-08-29 11:55:07 +00:00
2023-10-17 14:42:54 +00:00
2023-08-29 11:55:07 +00:00
2023-10-17 17:22:19 +00:00
2023-10-17 11:59:16 +00:00
2023-10-15 21:18:03 +00:00
2023-10-17 14:42:54 +00:00
2023-10-15 21:18:03 +00:00
2023-10-17 11:35:05 +00:00
2023-10-15 21:18:03 +00:00
2023-10-17 16:55:50 +00:00
2023-10-17 16:55:50 +00:00
2023-10-30 11:28:47 +00:00
2023-09-05 18:28:40 +00:00
2023-09-05 21:42:38 +00:00
2023-09-05 21:42:38 +00:00
2023-09-05 21:42:38 +00:00
2023-12-07 11:49:43 +00:00
2023-10-17 16:55:50 +00:00
2023-10-17 16:55:50 +00:00
2023-10-15 21:18:03 +00:00
2023-09-13 00:34:12 +00:00
2023-10-15 21:18:03 +00:00
2023-10-30 11:28:47 +00:00
2023-10-11 07:49:08 +00:00
2023-10-11 07:49:08 +00:00
2023-12-15 02:59:59 +00:00
2023-09-05 18:28:40 +00:00
2023-10-11 07:49:08 +00:00
2023-10-30 11:28:47 +00:00
2023-12-19 19:23:04 +00:00
2023-12-19 19:23:04 +00:00
2023-09-05 18:28:40 +00:00
2023-09-05 18:28:40 +00:00
2023-10-15 21:18:03 +00:00
2023-10-30 11:28:47 +00:00
2023-09-05 18:28:40 +00:00
2023-09-05 18:28:40 +00:00
2023-10-30 11:28:47 +00:00
2023-10-30 11:28:47 +00:00
2023-10-11 07:49:08 +00:00
2024-02-06 13:52:48 +00:00
2023-09-05 18:28:40 +00:00
2023-10-30 11:28:47 +00:00
2023-10-30 11:28:47 +00:00
2023-10-11 07:49:08 +00:00
2024-02-06 13:52:48 +00:00
2023-10-30 11:28:47 +00:00
2023-12-18 08:41:02 +00:00
2023-09-05 18:28:40 +00:00
2023-10-11 07:49:08 +00:00
2023-10-11 07:49:08 +00:00
2023-10-11 07:49:08 +00:00
2023-10-11 07:49:08 +00:00
2023-10-17 14:42:54 +00:00
2023-09-13 00:54:52 +00:00
2023-09-13 00:34:12 +00:00
2024-01-22 17:53:12 +00:00
2024-01-22 17:53:12 +00:00
2024-01-22 17:53:12 +00:00
2024-01-22 17:53:12 +00:00
2024-01-22 17:53:12 +00:00
2023-11-02 08:46:22 +00:00
2023-09-13 00:54:52 +00:00
2023-08-29 11:55:07 +00:00
2023-10-23 15:24:36 +00:00
2023-10-15 21:18:03 +00:00
2023-09-13 00:34:12 +00:00
2024-01-22 17:53:12 +00:00
2024-01-22 17:53:12 +00:00
2024-01-22 17:53:12 +00:00
2023-07-20 19:12:00 +05:30
2023-10-17 17:22:19 +00:00
2023-10-17 17:22:19 +00:00
2024-01-22 17:53:12 +00:00
2024-01-22 17:53:12 +00:00
2024-01-22 17:53:12 +00:00
2024-01-22 17:53:12 +00:00
2023-10-17 17:22:19 +00:00
2023-10-15 21:18:03 +00:00
2023-10-30 11:28:47 +00:00
2023-09-05 21:42:38 +00:00
2023-10-15 21:18:03 +00:00
2023-10-15 21:18:03 +00:00
2023-09-05 21:14:06 +00:00
2023-12-19 19:23:04 +00:00
2024-01-22 17:53:12 +00:00
2024-01-22 17:53:12 +00:00
2023-11-02 08:38:32 +00:00
2023-10-15 21:18:03 +00:00
2023-09-05 21:42:38 +00:00
2023-09-05 21:42:38 +00:00
2023-10-23 14:34:55 +00:00
2023-10-30 08:55:15 +00:00
2023-12-07 21:57:56 +00:00
2023-10-30 11:28:47 +00:00
2024-01-17 19:19:45 +00:00
2023-09-05 21:42:38 +00:00
2023-09-05 18:28:40 +00:00
2023-09-05 18:28:40 +00:00