osquery-defense-kit/detection
Thomas Strömberg 342aeda543
Merge pull request #382 from tstromberg/active-systemd
active systemd units: populate more in-the-wild examples
2024-08-27 12:06:58 -04:00
..
c2 Merge pull request #379 from tstromberg/fpr-aug20 2024-08-26 12:49:24 -04:00
collection fpr: sddm-helper, smartd, Xorg, elastic, WebEx, BambuStudio, keepass, etc 2024-07-26 13:26:37 -04:00
credentials fpr: kas, bitnami, redis, bincapz, kolide, docker, whatsapp 2024-07-12 16:55:49 -04:00
discovery fpr: syft, krunner, k9s, espeak, chainctl, supermaven 2024-08-12 13:57:35 -04:00
evasion fpr: syft, krunner, k9s, espeak, chainctl, supermaven 2024-08-12 13:57:35 -04:00
execution fpr: syft, krunner, k9s, espeak, chainctl, supermaven 2024-08-12 13:57:35 -04:00
exfil fpr: kas, bitnami, redis, bincapz, kolide, docker, whatsapp 2024-07-12 16:55:49 -04:00
impact
initial_access Merge pull request #381 from tstromberg/packed 2024-08-26 16:10:09 -04:00
persistence Merge pull request #382 from tstromberg/active-systemd 2024-08-27 12:06:58 -04:00
privesc fpr: lima, rpm-ostree, gitsign, kde, python, etc 2024-07-01 21:56:28 -04:00