osquery-defense-kit/detection
2025-03-07 16:29:48 -05:00
..
c2 fpr: Slack, ncdu, glances, dovecat, OrbStack, macOS 2025-03-07 16:29:48 -05:00
collection fpr: Slack, ncdu, glances, dovecat, OrbStack, macOS 2025-03-07 16:29:48 -05:00
credentials fpr: multipass, ChatGPT, Geocomply, librewolf, Canon drivers 2025-03-06 08:58:20 -05:00
discovery run "make reformat" 2025-02-26 12:14:46 -05:00
evasion fpr: Slack, ncdu, glances, dovecat, OrbStack, macOS 2025-03-07 16:29:48 -05:00
execution fpr: Slack, ncdu, glances, dovecat, OrbStack, macOS 2025-03-07 16:29:48 -05:00
exfil fpr: Slack, ncdu, glances, dovecat, OrbStack, macOS 2025-03-07 16:29:48 -05:00
impact more renames 2025-02-19 11:22:08 -05:00
initial_access fpr: multipass, ChatGPT, Geocomply, librewolf, Canon drivers 2025-03-06 08:58:20 -05:00
persistence fpr: Slack, ncdu, glances, dovecat, OrbStack, macOS 2025-03-07 16:29:48 -05:00
privesc fpr: datadog, nordvpn, claude, minecraftlauncher, eksctl 2025-02-25 16:53:31 -05:00