osquery-defense-kit/detection
Thomas Stromberg ef3653216e
New detector: relative exec low uid
2023-01-04 11:14:04 -05:00
..
c2 New Years cleanup: monitorix, snap-confine, steam, spotify, etc 2023-01-03 08:50:19 -05:00
collection False-positive flush: mount.ntfs, docker-credential-desktop, exotic socket refactor 2022-12-19 18:06:06 -05:00
credentials Merge pull request #104 from tstromberg/new-years 2023-01-03 08:50:59 -05:00
discovery Another false positive flush: Capital One, tailscaled, agetty, snap, ninja, epson printers, etc 2022-12-15 16:51:58 -05:00
evasion Merge pull request #104 from tstromberg/new-years 2023-01-03 08:50:59 -05:00
execution New detector: relative exec low uid 2023-01-04 11:14:04 -05:00
exfil New Years cleanup: monitorix, snap-confine, steam, spotify, etc 2023-01-03 08:50:19 -05:00
impact Resolve latest reported false positives 2022-12-02 11:20:18 -05:00
initial_access New Years cleanup: monitorix, snap-confine, steam, spotify, etc 2023-01-03 08:50:19 -05:00
persistence New Years cleanup: monitorix, snap-confine, steam, spotify, etc 2023-01-03 08:50:19 -05:00
privesc New Years cleanup: monitorix, snap-confine, steam, spotify, etc 2023-01-03 08:50:19 -05:00