osquery-defense-kit/detection
2024-10-23 10:59:37 -04:00
..
c2 fpr: bpftool, curl, pulumi, Docker Desktop, go tests 2024-10-23 10:59:37 -04:00
collection fpr: sequoia, osquery, cups, atops, transmission, etc 2024-09-23 11:07:53 -04:00
credentials fpr: bpftool, curl, pulumi, Docker Desktop, go tests 2024-10-23 10:59:37 -04:00
discovery Merge pull request #388 from tstromberg/net-events 2024-09-24 15:53:07 -04:00
evasion fpr: bpftool, curl, pulumi, Docker Desktop, go tests 2024-10-23 10:59:37 -04:00
execution fpr: bpftool, curl, pulumi, Docker Desktop, go tests 2024-10-23 10:59:37 -04:00
exfil fpr: tune-ppd, lightdm, nami, gradle, etc 2024-10-22 16:12:21 -04:00
impact fpr: snap, mutedeck, idea, Chrome exts 2024-01-18 17:15:37 -05:00
initial_access widen query scope 2024-10-16 09:32:00 -04:00
persistence fpr: tune-ppd, lightdm, nami, gradle, etc 2024-10-22 16:12:21 -04:00
privesc fpr: bwrap, malcontent, ld, metallb 2024-10-21 10:15:59 -04:00