Commit Graph

735 Commits

Author SHA1 Message Date
xenoscr
389b7e5bdd
Updating schema, created as date. 2022-09-10 22:43:02 -04:00
xenoscr
48ec17df1c
Updating schema file. 2022-09-10 22:36:43 -04:00
xenoscr
22481bcb71
Updating schema file. 2022-09-10 22:32:51 -04:00
xenoscr
ee011e6281
Correcting schema 2022-09-10 22:21:56 -04:00
xenoscr
ce36f924fc
Removing extra --- from each yaml file 2022-09-10 22:16:47 -04:00
xenoscr
0afb54868a
Changing to proposed fixed checker cketti/action-pykwalify@v0.3-temp-fix 2022-09-10 18:19:30 -04:00
xenoscr
3e57bc35c7
fixing versions 2022-09-10 18:13:35 -04:00
xenoscr
285ef35e9b
fixing indents 2022-09-10 18:11:14 -04:00
xenoscr
059f2419df
Attempting to fix pyKwalify checking 2022-09-10 18:08:58 -04:00
xenoscr
73d02562cd
Attempting to fix pyKwalify checking 2022-09-10 18:05:47 -04:00
xenoscr
9955d4ea77
Adding pyKwalify checking 2022-09-10 18:03:38 -04:00
xenoscr
f6761fad95
restoring push yamllint action 2022-09-10 17:33:11 -04:00
xenoscr
e25a0e7cb8
lint changes for push 2022-09-10 17:24:38 -04:00
xenoscr
c64d355075
lint changes for push 2022-09-10 17:17:55 -04:00
xenoscr
26c7c40413
changing linter 2022-09-10 17:06:21 -04:00
xenoscr
4990f5e81d
fixing workflow 2022-09-10 16:42:26 -04:00
xenoscr
f64f0d457e
Changing linter 2022-09-10 16:38:40 -04:00
xenoscr
68aff84291
adding config 2022-09-10 07:22:41 -04:00
xenoscr
167ae89d1c
update yaml-lint 2022-09-10 07:02:01 -04:00
Ryan Stamp
8810e30f0a
Fix incorrect decodehex command syntax (#230) 2022-09-02 18:44:23 +01:00
securepeacock
68c14b894c
Update UtilityFunctions.yml (#228) 2022-09-02 18:42:59 +01:00
Wietze
e1df4e9f83
Merge remote-tracking branch 'upstream/master' into windows_11_sprint 2022-09-02 17:23:45 +01:00
Oddvar Moe
c5c227a7ba
added sigma detection for pester 2022-09-02 17:18:24 +01:00
Oddvar Moe
5a38aa722f
Adjusted comment in command 2022-09-02 17:18:24 +01:00
Oddvar Moe
4b99cadd85
Update pester.bat with an additional example 2022-09-02 17:18:23 +01:00
Wietze
400158f2df
Add sigma references to CL_LoadAssembly, CLMutexVerifiers entries (#221) 2022-09-02 17:16:58 +01:00
Grzegorz Tworek
9b70f38986
Create Ldifde.yml 2022-08-31 17:58:30 +02:00
Oddvar Moe
68a6f0a35f added sigma detection for pester 2022-08-24 12:32:48 +02:00
721574n
4b564464fd Added external reference for Rundll32 2022-08-24 12:11:31 +02:00
Oddvar Moe
c53a8ea06e Adjusted comment in command 2022-08-23 15:47:17 +02:00
Oddvar Moe
fdc1b2c827 Update pester.bat with an additional example 2022-08-23 15:44:57 +02:00
fslds
da469d0652
Doc update 2022-08-08 20:40:26 +00:00
fslds
3162825fdc
Split procdump name pattern into two actual names. 2022-08-08 20:27:04 +00:00
fslds
55111b05b2
punctuation 2022-08-08 20:22:58 +00:00
fslds
fbff11e632
Added explanatory comments 2022-08-08 20:20:08 +00:00
fslds
c67eaec5cf
Adding aliases key to YAML template 2022-08-08 20:18:04 +00:00
Oddvar Moe
8283d8d915
Delete Dllhost.yml
https://twitter.com/0gtweet/status/1533804788038647808
2022-06-09 10:51:40 +02:00
frack113
91350057ce
Add sigma references to CL_LoadAssembly, CLMutexVerifiers entries (#221) 2022-06-04 11:50:35 +01:00
Wietze
539c1da0fa
Merge branch 'master' into windows_11_sprint 2022-05-25 09:25:42 +01:00
Chris "Lopi" Spehn
0dc56e9148
Merge pull request #220 from tsale/patch-1
Update Hh.yml
2022-05-24 17:33:07 -06:00
Kostas
314f585da9
Update Hh.yml
Added SysWoW64 Path
2022-05-24 15:29:03 -07:00
Kostas
aae794c59c
Update Hh.yml
Fixing the full path of the hh.exe binary to C:\Windows\hh.exe
2022-05-24 14:23:18 -07:00
Wietze
7797a1967c
Merge branch 'master' into windows_11_sprint 2022-05-24 08:38:50 +01:00
frack113
f85eeb748a
Add Sigma references to conhost, imewdbld, ie4uinit, ilasm, offlinescannershell and replace (#219) 2022-05-23 12:35:58 +01:00
Chris "Lopi" Spehn
36945392ca
Merge pull request #201 from wietze/new/Conhost
Adding Conhost.exe LOLBAS
2022-05-19 10:27:10 -06:00
Chris "Lopi" Spehn
e872ce028b
Merge pull request #214 from jstnk9/master
Added new sigma rule and references to desk.cpl
2022-05-19 10:21:21 -06:00
Chris "Lopi" Spehn
82f19b22e7
Merge pull request #217 from ManuelBerrueta/master
Updated yml/OtherMSBinaries/Sqlps.yml, used recently in a campaign sh…
2022-05-19 10:19:22 -06:00
ManuelBerrueta
68b772a567 Updated yml/OtherMSBinaries/Sqlps.yml, used recently in a campaign shared my Microsoft Security Intelligence. Would be useful reference for Red Teamers/Offensive Security Engineers as well as Blue Teamers/Defenders who reference this open source project/library. 2022-05-19 07:12:37 -07:00
Chris "Lopi" Spehn
3ce3ec6656
Merge pull request #216 from TactiKoolSec/master
Added entry for rdrleakdiag.exe process dumping lolbas
2022-05-19 07:32:58 -06:00
John Dwyer
90b6082f1d Update Rdrleakdiag.yml 2022-05-19 13:30:11 +00:00