osquery-defense-kit/detection/discovery
Thomas Stromberg b22625d38a Add more velociraptor exceptions 2023-07-12 17:42:02 -04:00
..
unexpected-bpf-user.sql Speed up unexpected-bpf-users query by basing it on processes 2023-01-09 15:18:00 -05:00
unexpected-netutil-calls-linux.sql Make process times broadly available, minor opts 2023-05-16 17:18:39 -04:00
unexpected-netutil-calls-macos.sql fpr: Velociraptor, nessus, kandji, java, SteelSeries, etc 2023-07-12 17:38:26 -04:00
unexpected-pcap-user-linux.sql False positives: melange, ~/dev, debian-sa1, AdBlock, cover, kubelr, etc 2022-11-18 10:27:43 -05:00
unexpected-pcap-user-macos.sql Add more velociraptor exceptions 2023-07-12 17:42:02 -04:00