osquery-defense-kit/detection
2023-10-25 09:49:07 -04:00
..
c2 fpr: Electron, Github 2023-10-25 09:49:07 -04:00
collection fpr: RSA keys, tcpdump, login, crane, souregraph, etc 2023-09-20 09:30:46 -04:00
credentials fpr: Kolide, qemu, bash, monday, macOS 2023-10-24 18:01:36 -04:00
discovery fpr: RSA keys, tcpdump, login, crane, souregraph, etc 2023-09-20 09:30:46 -04:00
evasion fpr: Electron, Github 2023-10-25 09:49:07 -04:00
execution fpr: osquery release spam 2023-10-24 18:32:03 -04:00
exfil fpr: mtr, vscode, cpptools, cron, firefox 2023-10-25 09:18:04 -04:00
impact fpr: RSA keys, tcpdump, login, crane, souregraph, etc 2023-09-20 09:30:46 -04:00
initial_access fpr: Kolide, qemu, bash, monday, macOS 2023-10-24 18:01:36 -04:00
persistence fpr: mtr, vscode, cpptools, cron, firefox 2023-10-25 09:18:04 -04:00
privesc fpr: sourcegraph, nginx, factorio, fan control, emacs, nushell 2023-09-14 17:13:12 -04:00