yugoslavskiy
|
016a89c186
|
Update win_susp_net_recon_activity.yml
|
2020-11-28 08:00:07 +01:00 |
|
Jonhnathan
|
48f16a0ca8
|
Update win_susp_net_recon_activity.yml
|
2020-11-26 22:39:49 -03:00 |
|
Jonhnathan
|
5d85bbba56
|
Improve detection logic
|
2020-11-19 22:37:13 -03:00 |
|
Yugoslavskiy Daniil
|
42c4079ed8
|
att&ck tags review: windows/builtin, windows/driver_load, windows/file_event, windows/image_load, windows/other
|
2020-08-25 01:09:17 +02:00 |
|
Florian Roth
|
e79e99c4aa
|
fix: fixed missing date fields in remaining files
|
2020-01-30 16:07:37 +01:00 |
|
Thomas Patzke
|
0592cbb67a
|
Added UUIDs to rules
|
2019-11-12 23:12:27 +01:00 |
|
Tareq AlKhatib
|
15e2f5df5f
|
fixed typos
|
2019-06-29 15:35:59 +03:00 |
|
Sherif Eldeeb
|
23eddafb39
|
Replace "logsource: description" with "definition" to match the specs
|
2018-11-15 09:00:06 +03:00 |
|
Florian Roth
|
9c878bef79
|
fix: duplicate 'tag' key in rule
|
2018-09-04 16:05:21 +02:00 |
|
Thomas Patzke
|
0d8bc922a3
|
Merge branch 'master' into master
|
2018-07-24 08:23:37 +02:00 |
|
David Spautz
|
e275d44462
|
Add tags to windows builtin rules
|
2018-07-24 07:50:32 +02:00 |
|
James Dickenson
|
c4edc26267
|
windows builtin mitre attack tags
|
2018-07-23 21:34:20 -07:00 |
|
megan201296
|
a169723005
|
fixed typo
|
2018-07-13 13:53:21 -05:00 |
|
SherifEldeeb
|
48441962cc
|
Change All "str" references to be "list"to mach schema update
|
2018-01-28 02:24:16 +03:00 |
|
SherifEldeeb
|
112a0939d7
|
Change "reference" to "references" to match new schema
|
2018-01-28 02:12:19 +03:00 |
|
Florian Roth
|
aca70e57ec
|
Massive Title Cleanup
|
2018-01-27 10:57:30 +01:00 |
|
Florian Roth
|
1464ab4ab8
|
Renamed rule: recon activity > net recon activity - to be more specific
|
2017-12-11 09:31:54 +01:00 |
|