osquery-defense-kit/detection
Thomas Stromberg df925eaa6c
fpr: lghub, brew, pve, chrome exts, etc
2023-04-20 20:45:35 -04:00
..
c2 fpr: lghub, brew, pve, chrome exts, etc 2023-04-20 20:45:35 -04:00
collection fpr: LGHUB keys, go, Acrobat, code, yum, fwupdatemgr 2023-03-31 06:19:30 -04:00
credentials fpr everything 2023-04-17 16:20:35 -04:00
discovery fpr: aws-sdk, melange, Tailscale, Xprotect, etc 2023-03-03 07:24:42 -05:00
evasion fpr: lghub, brew, pve, chrome exts, etc 2023-04-20 20:45:35 -04:00
execution fpr: lghub, brew, pve, chrome exts, etc 2023-04-20 20:45:35 -04:00
exfil fpr: lghub, brew, pve, chrome exts, etc 2023-04-20 20:45:35 -04:00
impact fpr: minikube, tailscale, dex, pacman, virtualbox, steam, lsmod, busybox, etc 2023-01-23 20:33:52 -05:00
initial_access fpr: lghub, brew, pve, chrome exts, etc 2023-04-20 20:45:35 -04:00
persistence fpr: lghub, brew, pve, chrome exts, etc 2023-04-20 20:45:35 -04:00
privesc fpr everything 2023-04-17 16:20:35 -04:00