osquery-defense-kit/detection
Dave Smith 7ad81b16c2
add extra tag to setxid-cmdline-overflow-attempt.sql
Signed-off-by: Dave Smith <dave.smith@chainguard.dev>
2024-10-24 18:42:46 -04:00
..
c2 fpr, refactor minimal-socket-client-macos 2024-10-24 15:12:33 -04:00
collection fpr: wider talkers exception, chrome extensions, postgres 2024-10-23 17:28:37 -04:00
credentials fpr: wider talkers exception, chrome extensions, postgres 2024-10-23 17:28:37 -04:00
discovery fpr: wider talkers exception, chrome extensions, postgres 2024-10-23 17:28:37 -04:00
evasion Fix cursor placement 2024-10-24 15:36:05 -04:00
execution Mark as extra, as this query is racey 2024-10-24 15:36:21 -04:00
exfil fpr + Mark touched-executable as extra on macOS 2024-10-24 11:20:06 -04:00
impact Update evenly-timestomped.sql 2024-10-23 10:02:37 -04:00
initial_access widen query scope 2024-10-16 09:32:00 -04:00
persistence fpr, refactor minimal-socket-client-macos 2024-10-24 15:12:33 -04:00
privesc add extra tag to setxid-cmdline-overflow-attempt.sql 2024-10-24 18:42:46 -04:00