osquery-defense-kit/detection
Dave Smith 335aca58b7 false positive reduction: apt, auditd, dockerd, etc. 2024-11-07 10:00:40 -05:00
..
c2 false positive reduction: apt, auditd, dockerd, etc. 2024-11-07 10:00:40 -05:00
collection fpr: framework nix, etc 2024-10-30 08:30:43 -04:00
credentials Add deskflow-server and additional repos directory 2024-10-30 10:28:00 -05:00
discovery fpr: wider talkers exception, chrome extensions, postgres 2024-10-23 17:28:37 -04:00
evasion false positive reduction: apt, auditd, dockerd, etc. 2024-11-07 10:00:40 -05:00
execution Add rules for bambu-studio, extensions, firefox-bin, goland, xdg, and more 2024-11-01 14:27:33 -05:00
exfil Merge pull request #410 from tstromberg/oct25 2024-10-25 16:38:43 -04:00
impact
initial_access More exceptions to cut down on alert noise 2024-10-31 15:47:35 -05:00
persistence false positive reduction: apt, auditd, dockerd, etc. 2024-11-07 10:00:40 -05:00
privesc fpr: bwrap 2024-10-29 09:34:42 -04:00