osquery-defense-kit/detection/initial_access
2023-01-06 15:31:08 -05:00
..
unexpected-diskimage-source-macos.sql Remove more false positives: kind, gopls, docker.socket, etc 2022-12-15 10:20:16 -05:00
unexpected-shell-parent-events.sql Rewrite unexpected-osascript-calls for simplicity 2023-01-06 15:31:08 -05:00
unexpected-shell-parents.sql Flush out more false positives across the stack 2023-01-06 10:36:48 -05:00
unexpected-volume-contents.sql Begin making use of cgroup_paths, clear more false positives 2022-11-16 16:52:39 -05:00
unexpected-webmail-downloads.sql webmail: Add JFIF, remove BZ2, TAR, GZ from expectations list 2022-10-27 16:26:43 -04:00