Thomas Stromberg
|
195330da9a
|
Fix docker-mounting-root query that got stomped on
|
2022-10-21 12:05:06 -04:00 |
Thomas Stromberg
|
ab94de7770
|
Add a lot more mitre data
|
2022-10-19 16:56:32 -04:00 |
Thomas Stromberg
|
2b5ea76729
|
Apply 'npx sql-formatter -l sqlite'
|
2022-10-17 19:06:17 -04:00 |
Thomas Stromberg
|
9616a6ab36
|
Use 'rapid' instead of 'continous' for tagging
|
2022-10-17 08:43:29 -04:00 |
Thomas Stromberg
|
f2023c0021
|
Update interval tags, mostly for persistence
|
2022-10-14 14:26:49 -04:00 |
Thomas Stromberg
|
d2bdffe89e
|
Add support for interval tags
|
2022-10-14 14:19:13 -04:00 |
Thomas Stromberg
|
06fd003475
|
Use single-quotes for Kolide compatibility
|
2022-10-14 10:29:23 -04:00 |
Thomas Stromberg
|
3c6d4968e1
|
Add two Docker checks that can catch Traitor
|
2022-10-14 09:16:48 -04:00 |
Thomas Stromberg
|
dc9493ee1e
|
Tighten down the field list, update metadata
|
2022-10-14 09:16:24 -04:00 |
Thomas Stromberg
|
4a7f734c81
|
Add metadata, mark as Linux only.
|
2022-10-14 08:42:10 -04:00 |
Thomas Stromberg
|
20452b128b
|
Migrate query strings from double to single apostrophes
|
2022-10-13 14:59:32 -04:00 |
Thomas Stromberg
|
26ee658c4a
|
Initial re-organization around the MITRE ATT&CK framework
|
2022-10-11 21:53:36 -04:00 |