Thomas Stromberg
|
4d0a9fd533
|
fpr: sequoia, osquery, cups, atops, transmission, etc
|
2024-09-23 11:07:53 -04:00 |
|
Thomas Stromberg
|
5dd614f54c
|
fpr: MHLink, k3d, BlueFin, query tuning
|
2024-04-26 16:14:02 -04:00 |
|
Thomas Stromberg
|
342d813bf8
|
fpr: Docker Desktop, code-oss, incus, etc
|
2024-02-26 17:26:56 -05:00 |
|
Thomas Stromberg
|
6b4700c3dd
|
Address issues which kept these alerts from firing
|
2023-09-24 22:02:34 -04:00 |
|
Thomas Stromberg
|
d3780c0a6c
|
Remove ubuntu-lts false-positives on lima
|
2023-02-20 19:10:12 -05:00 |
|
Thomas Stromberg
|
dbbe319d72
|
Ignore JSON files
|
2022-11-03 14:24:53 -04:00 |
|
Thomas Stromberg
|
e7e714c9db
|
Make another stab at reducing false positives across the map
|
2022-11-03 11:51:54 -04:00 |
|
Thomas Stromberg
|
caab2a6c82
|
Loads of fresh new false-positives removal
|
2022-10-31 17:40:37 -04:00 |
|
Thomas Stromberg
|
27a3013bba
|
Split up the unexpected-filesystem-entries by platform
|
2022-10-14 15:14:24 -04:00 |
|
Thomas Stromberg
|
9889a9308f
|
Make unexpected-var-executables safe for execution on macOS
|
2022-10-14 14:31:39 -04:00 |
|
Thomas Stromberg
|
d2bdffe89e
|
Add support for interval tags
|
2022-10-14 14:19:13 -04:00 |
|
Thomas Stromberg
|
20452b128b
|
Migrate query strings from double to single apostrophes
|
2022-10-13 14:59:32 -04:00 |
|
Thomas Stromberg
|
26ee658c4a
|
Initial re-organization around the MITRE ATT&CK framework
|
2022-10-11 21:53:36 -04:00 |
|