osquery-defense-kit/detection/c2
Thomas Stromberg 430f397f1e fpr: Velociraptor, Hyprland, iio 2023-07-12 15:00:36 -04:00
..
unexpected-dns-traffic-events.sql fpr: Brave, Adobe, Signal, Kandji, SteelSeries, etc 2023-06-30 16:38:31 -04:00
unexpected-dns-traffic.sql fpr: terragrunt, mdnsResponder, Spotify, Zoom, etc 2023-06-14 10:58:41 -04:00
unexpected-https-linux.sql fpr: Velociraptor, Hyprland, iio 2023-07-12 15:00:36 -04:00
unexpected-https-macos.sql fpr: Brave, Adobe, Signal, Kandji, SteelSeries, etc 2023-06-30 16:38:31 -04:00
unexpected-icmp-socket-events.sql Slow queries down, minor improvements 2023-02-01 16:17:36 -05:00
unexpected-icmp-socket.sql Run make reformat, update max rows for incident response 2023-02-02 17:58:19 -05:00
unexpected-libcurl-user-linux.sql fpr: macOS, Signal, Creative Labs, node, etc 2023-06-07 09:55:17 -04:00
unexpected-libcurl-user-macos.sql Add unexpected libcurl detector 2023-03-16 16:10:25 -04:00
unexpected-talkers-linux.sql fpr: Brave, Adobe, Signal, Kandji, SteelSeries, etc 2023-06-30 16:38:31 -04:00
unexpected-talkers-macos.sql fpr: Steam, Presenting, Wavebox, multipass, parallels, cargo, dnf, Kindle, DaveTheDiver 2023-07-03 07:16:14 -04:00