osquery-defense-kit/detection/initial_access
2023-01-13 13:47:02 -05:00
..
unexpected-diskimage-source-macos.sql Add support for .pkg files 2023-01-13 13:47:02 -05:00
unexpected-shell-parent-events.sql false positives: dots, ipn, apport-gtk, homebrew, hyperkey, contexts 2023-01-09 09:34:20 -05:00
unexpected-shell-parents.sql Add some hash fields, fix some false positives 2023-01-09 09:04:38 -05:00
unexpected-volume-contents.sql Begin making use of cgroup_paths, clear more false positives 2022-11-16 16:52:39 -05:00
unexpected-webmail-downloads.sql