osquery-defense-kit/detection
2022-10-18 11:40:42 -04:00
..
c2 Simplify exotic commands queries, remove more false positives 2022-10-18 11:32:18 -04:00
credentials Flush out more false positives 2022-10-17 20:37:44 -04:00
discovery Minor adjustments 2022-10-17 17:11:15 -04:00
evasion Improve how we deal with the zfs case 2022-10-18 11:40:42 -04:00
execution Simplify exotic commands queries, remove more false positives 2022-10-18 11:32:18 -04:00
exfil Flush out more false positives 2022-10-17 20:37:44 -04:00
impact Detect more 2022-10-18 10:08:34 -04:00
initial_access Add new spotlight queries to surface unexpected dmg/iso downloads 2022-10-18 08:52:05 -04:00
persistence Flush out more false positives 2022-10-17 20:37:44 -04:00
privesc Apply 'npx sql-formatter -l sqlite' 2022-10-17 19:06:17 -04:00