osquery-defense-kit/detection/persistence
Thomas Stromberg a8b95a2c9e
New Years cleanup: monitorix, snap-confine, steam, spotify, etc
2023-01-03 08:50:19 -05:00
..
fake-apple-launchd.sql Add a lot more mitre data 2022-10-19 16:56:32 -04:00
unexpected-active-systemd-units.sql Sort out more false positives 2022-12-16 17:37:32 -05:00
unexpected-chrome-extensions.sql New Years cleanup: monitorix, snap-confine, steam, spotify, etc 2023-01-03 08:50:19 -05:00
unexpected-cron-entries.sql False positives: melange, ~/dev, debian-sa1, AdBlock, cover, kubelr, etc 2022-11-18 10:27:43 -05:00
unexpected-launchd-program-arguments.sql Another false positive flush: Capital One, tailscaled, agetty, snap, ninja, epson printers, etc 2022-12-15 16:51:58 -05:00
unexpected-launchd-program.sql Remove more false positives: kind, gopls, docker.socket, etc 2022-12-15 10:20:16 -05:00
unexpected-listening-port-linux.sql New Years cleanup: monitorix, snap-confine, steam, spotify, etc 2023-01-03 08:50:19 -05:00
unexpected-listening-port-macos.sql Pre-Thanksgiving False Positive cleanup, including Pop!OS support 2022-11-22 09:21:03 -05:00
unexpected-small-udev-entry.sql New Years cleanup: monitorix, snap-confine, steam, spotify, etc 2023-01-03 08:50:19 -05:00
unexpected-uid0-daemon-linux.sql New Years cleanup: monitorix, snap-confine, steam, spotify, etc 2023-01-03 08:50:19 -05:00
unexpected-uid0-daemon-macos.sql Add a lot more mitre data 2022-10-19 16:56:32 -04:00