Commit Graph

3 Commits

Author SHA1 Message Date
ecco
4c54e8322a sysmon eventid 3: filter on outgoing connections (initiated: true) to avoid false positives 2019-09-25 11:11:22 -04:00
Michael Wade
f70549ec54 First Pass 2019-06-13 23:15:38 -05:00
Florian Roth
f0a4aede24 Rule: RDP over Reverse SSH Tunnel 2019-02-16 19:36:13 +01:00