osquery-defense-kit/detection/c2
Thomas Strömberg 7d468b6166
Merge pull request #379 from tstromberg/fpr-aug20
unexpected https: add GitHub to exceptions list
2024-08-26 12:49:24 -04:00
..
unexpected-dns-traffic-events.sql fpr: lima, rpm-ostree, gitsign, kde, python, etc 2024-07-01 21:56:28 -04:00
unexpected-dns-traffic.sql Add allows for various alerts seen 2024-07-15 2024-07-15 13:27:27 -05:00
unexpected-https-linux.sql fpr: syft, krunner, k9s, espeak, chainctl, supermaven 2024-08-12 13:57:35 -04:00
unexpected-https-macos.sql Merge pull request #379 from tstromberg/fpr-aug20 2024-08-26 12:49:24 -04:00
unexpected-icmp-socket-events.sql Performance tuning, mark some Linux queries as 'extra' 2024-03-15 19:06:16 -04:00
unexpected-icmp-socket.sql Performance tuning, mark some Linux queries as 'extra' 2024-03-15 19:06:16 -04:00
unexpected-libcurl-user-linux.sql fpr: lima, rpm-ostree, gitsign, kde, python, etc 2024-07-01 21:56:28 -04:00
unexpected-libcurl-user-macos.sql Add unexpected libcurl detector 2023-03-16 16:10:25 -04:00
unexpected-talker-events.sql Merge pull request #362 from tstromberg/kandji 2024-03-15 19:07:10 -04:00
unexpected-talkers-linux.sql fpr: sddm-helper, smartd, Xorg, elastic, WebEx, BambuStudio, keepass, etc 2024-07-26 13:26:37 -04:00
unexpected-talkers-macos.sql fpr: syft, krunner, k9s, espeak, chainctl, supermaven 2024-08-12 13:57:35 -04:00