osquery-defense-kit/detection/c2
Thomas Stromberg 066c88dc18 fpr: multipass, go, macOS, Ubuntu, Opera, git, ko 2023-06-02 19:08:08 -04:00
..
unexpected-dns-traffic-events.sql fpr: multipass, go, macOS, Ubuntu, Opera, git, ko 2023-06-02 19:08:08 -04:00
unexpected-dns-traffic.sql Massive reduction of false positives across the board 2023-02-08 20:06:26 -05:00
unexpected-https-linux.sql fpr: FleetDM, Edge, VSCode, dnf, Steam, etc 2023-06-01 11:52:20 -04:00
unexpected-https-macos.sql fpr: multipass, go, macOS, Ubuntu, Opera, git, ko 2023-06-02 19:08:08 -04:00
unexpected-icmp-socket-events.sql Slow queries down, minor improvements 2023-02-01 16:17:36 -05:00
unexpected-icmp-socket.sql Run make reformat, update max rows for incident response 2023-02-02 17:58:19 -05:00
unexpected-libcurl-user-linux.sql fpr: multipass, go, macOS, Ubuntu, Opera, git, ko 2023-06-02 19:08:08 -04:00
unexpected-libcurl-user-macos.sql Add unexpected libcurl detector 2023-03-16 16:10:25 -04:00
unexpected-talkers-linux.sql fpr: macOS, yubikey, Premiere, dnf, vagrant, etc 2023-05-23 11:31:37 -04:00
unexpected-talkers-macos.sql fpr: multipass, go, macOS, Ubuntu, Opera, git, ko 2023-06-02 19:08:08 -04:00