John Dwyer
							
						 
					 | 
					
						
						
							
						
						90b6082f1d
					 | 
					
						
						
							
							Update Rdrleakdiag.yml
						
						
						
						
						
						
					 | 
					
						2022-05-19 13:30:11 +00:00 | 
					
					
						
						
						
							
							
							
							
							
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								John Dwyer
							
						 
					 | 
					
						
						
							
						
						e2493d8ccf
					 | 
					
						
						
							
							Detection Resources and Other Updates (LOLBAS-Project#84)
						
						
						
						
						
						
						
						https://github.com/LOLBAS-Project/LOLBAS/issues/84 
						
						
					 | 
					
						2022-05-18 19:00:26 +00:00 | 
					
					
						
						
						
							
							
							
							
							
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								John Dwyer
							
						 
					 | 
					
						
						
							
						
						d935f096fd
					 | 
					
						
						
							
							Added rdrleakdiag dump
						
						
						
						
						
						
						
						Added yaml for rdrleakdiag process dumping capability 
						
						
					 | 
					
						2022-05-18 18:58:04 +00:00 | 
					
					
						
						
						
							
							
							
							
							
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								frack113
							
						 
					 | 
					
						
						
							
						
						d1738b946b
					 | 
					
						
						
							
							Adding various Sigma references (#213)
						
						
						
						
						
						
						
						Co-authored-by: Wietze <wietze@users.noreply.github.com> 
						
						
					 | 
					
						2022-05-17 09:18:45 +01:00 | 
					
					
						
						
						
							
							
							
							
							
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								akshat pradhan
							
						 
					 | 
					
						
						
							
						
						79f4cbdb7f
					 | 
					
						
						
							
							Changed tid to T1105 for downloads (#195)
						
						
						
						
						
						
					 | 
					
						2022-05-15 20:38:24 +01:00 | 
					
					
						
						
						
							
							
							
							
							
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Wietze
							
						 
					 | 
					
						
						
							
						
						55a7ea9a81
					 | 
					
						
						
							
							Fixing wlrmdr entry
						
						
						
						
						
						
					 | 
					
						2022-02-16 21:02:24 +00:00 | 
					
					
						
						
						
							
							
							
							
							
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Moshe Kaplan
							
						 
					 | 
					
						
						
							
						
						12c85eb8f0
					 | 
					
						
						
							
							Create wlrmdr.yml (#194)
						
						
						
						
						
						
						
						Co-authored-by: Wietze <wietze@users.noreply.github.com> 
						
						
					 | 
					
						2022-02-16 20:41:14 +00:00 | 
					
					
						
						
						
							
							
							
							
							
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								akshat pradhan
							
						 
					 | 
					
						
						
							
						
						a7f7ec2cc2
					 | 
					
						
						
							
							Changing ATT&CK TID of wuauclt.exe entry (#193)
						
						
						
						
						
						
					 | 
					
						2022-01-23 22:24:59 +00:00 | 
					
					
						
						
						
							
							
							
							
							
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								frack113
							
						 
					 | 
					
						
						
							
						
						17899acbb0
					 | 
					
						
						
							
							Adding Sigma references to ConfigSecurityPolicy, Diantz, ExtExport & Extrac32 (#184)
						
						
						
						
						
						
					 | 
					
						2021-12-06 11:19:01 +00:00 | 
					
					
						
						
						
							
							
							
							
							
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								frack113
							
						 
					 | 
					
						
						
							
						
						2d28767c04
					 | 
					
						
						
							
							Adding new Sigma references (AppInstaller, AspnetCompiler, Bash, Certreq) (#183)
						
						
						
						
						
						
					 | 
					
						2021-11-25 09:42:26 +00:00 | 
					
					
						
						
						
							
							
							
							
							
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Wietze
							
						 
					 | 
					
						
						
							
						
						f7b30775a4
					 | 
					
						
						
							
							Odbcconf realign to T1218.008, hh.exe to T1218.001
						
						
						
						
						
						
					 | 
					
						2021-11-16 14:09:37 +00:00 | 
					
					
						
						
						
							
							
							
							
							
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								bohops
							
						 
					 | 
					
						
						
							
						
						23dd0236ae
					 | 
					
						
						
							
							Detection Resources and Other Updates (#179)
						
						
						
						
						
						
						
						* Add detection links for scripts
* Add detection links for OtherMSBins. Fixed and updated as needed.
* Add detection links for MSBins. Fixed and updated as needed.
* Add detection links for oslibraries
* Updating template for Detections
* Removing empty Detection:Sigma entries
* Remove redundant blank line
* Replacing commit URL with file URL
Co-authored-by: root <root@DESKTOP-5CR935D.localdomain>
Co-authored-by: Wietze <wietze@users.noreply.github.com> 
						
						
					 | 
					
						2021-11-15 08:19:03 -05:00 | 
					
					
						
						
						
							
							
							
							
							
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								akshat pradhan
							
						 
					 | 
					
						
						
							
						
						2031916b1a
					 | 
					
						
						
							
							ATT&CK realignment, typo fixes (#178)
						
						
						
						
						
						
						
						* Corrected Mitre TID for pnputil
* Fixed Command misspells 
						
						
					 | 
					
						2021-11-14 17:27:17 +00:00 | 
					
					
						
						
						
							
							
							
							
							
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Wietze
							
						 
					 | 
					
						
						
							
						
						2380c506d4
					 | 
					
						
						
							
							LSASS realign to T1003.001
						
						
						
						
						
						
					 | 
					
						2021-11-05 20:35:58 +00:00 | 
					
					
						
						
						
							
							
							
							
							
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Wietze
							
						 
					 | 
					
						
						
							
						
						df8c88f4ca
					 | 
					
						
						
							
							Remaping NTDS entries to T1003.003
						
						
						
						
						
						
					 | 
					
						2021-11-05 20:32:44 +00:00 | 
					
					
						
						
						
							
							
							
							
							
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Wietze
							
						 
					 | 
					
						
						
							
						
						bc51cb4e03
					 | 
					
						
						
							
							More changes (mainly changing some T1218 instances to T1202)
						
						
						
						
						
						
					 | 
					
						2021-11-05 20:19:39 +00:00 | 
					
					
						
						
						
							
							
							
							
							
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Wietze
							
						 
					 | 
					
						
						
							
						
						2577066af9
					 | 
					
						
						
							
							More changes (mainly changing generic T1218 to dev-specific T1127)
						
						
						
						
						
						
					 | 
					
						2021-11-05 20:06:57 +00:00 | 
					
					
						
						
						
							
							
							
							
							
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Wietze
							
						 
					 | 
					
						
						
							
						
						8286677dac
					 | 
					
						
						
							
							Applying more specific subtechniques to Verclsid
						
						
						
						
						
						
					 | 
					
						2021-11-05 19:38:21 +00:00 | 
					
					
						
						
						
							
							
							
							
							
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Wietze
							
						 
					 | 
					
						
						
							
						
						80e3f67e44
					 | 
					
						
						
							
							Applying more specific subtechniques to At/Schtasks, closes LOLBAS-Project/LOLBAS#113
						
						
						
						
						
						
					 | 
					
						2021-11-05 19:33:59 +00:00 | 
					
					
						
						
						
							
							
							
							
							
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Wietze
							
						 
					 | 
					
						
						
							
						
						4f7ec8d2af
					 | 
					
						
						
							
							MITRE ATT&CK realignment sprint
						
						
						
						
						
						
					 | 
					
						2021-11-05 18:58:26 +00:00 | 
					
					
						
						
						
							
							
							
							
							
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Ensar Şamil
							
						 
					 | 
					
						
						
							
						
						97f5042a58
					 | 
					
						
						
							
							Update Certoc.yml (#168)
						
						
						
						
						
						
						
						Co-authored-by: Wietze <wietze@users.noreply.github.com> 
						
						
					 | 
					
						2021-10-27 10:02:52 +01:00 | 
					
					
						
						
						
							
							
							
							
							
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Oddvar Moe
							
						 
					 | 
					
						
						
							
						
						5db35bb397
					 | 
					
						
						
							
							Updated msbuild with logger technique
						
						
						
						
						
						
					 | 
					
						2021-10-26 00:27:35 +02:00 | 
					
					
						
						
						
							
							
							
							
							
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Oddvar Moe
							
						 
					 | 
					
						
						
							
						
						7aeed60864
					 | 
					
						
						
							
							Updated msbuild with logger technique
						
						
						
						
						
						
					 | 
					
						2021-10-26 00:19:57 +02:00 | 
					
					
						
						
						
							
							
							
							
							
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Oddvar Moe
							
						 
					 | 
					
						
						
							
						
						b91c7ddab5
					 | 
					
						
						
							
							Updated msbuild with logger technique
						
						
						
						
						
						
					 | 
					
						2021-10-26 00:17:08 +02:00 | 
					
					
						
						
						
							
							
							
							
							
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Wietze
							
						 
					 | 
					
						
						
							
						
						d411d9572b
					 | 
					
						
						
							
							Create Finger.exe (#154)
						
						
						
						
						
						
						
						Closes #24, #123 
						
						
					 | 
					
						2021-10-25 12:30:32 +01:00 | 
					
					
						
						
						
							
							
							
							
							
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Wietze
							
						 
					 | 
					
						
						
							
						
						eafc1982f0
					 | 
					
						
						
							
							Website update
						
						
						
						
						
						
					 | 
					
						2021-10-25 12:28:09 +01:00 | 
					
					
						
						
						
							
							
							
							
							
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Wietze
							
						 
					 | 
					
						
						
							
						
						234eb99a7d
					 | 
					
						
						
							
							Formatting
						
						
						
						
						
						
					 | 
					
						2021-10-25 12:27:00 +01:00 | 
					
					
						
						
						
							
							
							
							
							
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Wietze
							
						 
					 | 
					
						
						
							
						
						afe93672a4
					 | 
					
						
						
							
							Minor updates
						
						
						
						
						
						
					 | 
					
						2021-10-25 12:25:13 +01:00 | 
					
					
						
						
						
							
							
							
							
							
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Oddvar Moe
							
						 
					 | 
					
						
						
							
						
						1b15eccf07
					 | 
					
						
						
							
							Merge branch 'master' into master
						
						
						
						
						
						
					 | 
					
						2021-10-22 16:46:18 +02:00 | 
					
					
						
						
						
							
							
							
							
							
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Oddvar Moe
							
						 
					 | 
					
						
						
							
						
						58b5eb7513
					 | 
					
						
						
							
							Update OneDriveStandaloneUpdater.yml
						
						
						
						
						
						
					 | 
					
						2021-10-22 16:43:28 +02:00 | 
					
					
						
						
						
							
							
							
							
							
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Oddvar Moe
							
						 
					 | 
					
						
						
							
						
						a509625acc
					 | 
					
						
						
							
							Update OneDriveStandaloneUpdater.yml
						
						
						
						
						
						
					 | 
					
						2021-10-22 16:41:56 +02:00 | 
					
					
						
						
						
							
							
							
							
							
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Oddvar Moe
							
						 
					 | 
					
						
						
							
						
						70a061d301
					 | 
					
						
						
							
							Merge pull request #153 from elliotkillick/OneDriveStandaloneUpdater
						
						
						
						
						
						
						
						Create OneDriveStandaloneUpdater.yml 
						
						
					 | 
					
						2021-10-22 16:39:14 +02:00 | 
					
					
						
						
						
							
							
							
							
							
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Oddvar Moe
							
						 
					 | 
					
						
						
							
						
						486b5fc1ef
					 | 
					
						
						
							
							Merge pull request #152 from elliotkillick/SettingSyncHost
						
						
						
						
						
						
						
						Create SettingSyncHost.yml 
						
						
					 | 
					
						2021-10-22 16:36:13 +02:00 | 
					
					
						
						
						
							
							
							
							
							
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Oddvar Moe
							
						 
					 | 
					
						
						
							
						
						44f88df089
					 | 
					
						
						
							
							Update Cmdl32.yml
						
						
						
						
						
						
					 | 
					
						2021-10-22 16:34:41 +02:00 | 
					
					
						
						
						
							
							
							
							
							
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Oddvar Moe
							
						 
					 | 
					
						
						
							
						
						ccb20e560c
					 | 
					
						
						
							
							Rename cmdl32.yml to Cmdl32.yml
						
						
						
						
						
						
					 | 
					
						2021-10-22 16:33:24 +02:00 | 
					
					
						
						
						
							
							
							
							
							
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Oddvar Moe
							
						 
					 | 
					
						
						
							
						
						5a62424a79
					 | 
					
						
						
							
							Merge pull request #151 from elliotkillick/cmdl32
						
						
						
						
						
						
						
						Create cmdl32.yml 
						
						
					 | 
					
						2021-10-22 16:32:42 +02:00 | 
					
					
						
						
						
							
							
							
							
							
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Oddvar Moe
							
						 
					 | 
					
						
						
							
						
						fb9b6d65d5
					 | 
					
						
						
							
							Update cmdl32.yml
						
						
						
						
						
						
					 | 
					
						2021-10-22 16:31:54 +02:00 | 
					
					
						
						
						
							
							
							
							
							
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Oddvar Moe
							
						 
					 | 
					
						
						
							
						
						adcb7e0c57
					 | 
					
						
						
							
							Merge pull request #150 from elliotkillick/OfflineScannerShell
						
						
						
						
						
						
						
						Create OfflineScannerShell.yml 
						
						
					 | 
					
						2021-10-22 16:28:33 +02:00 | 
					
					
						
						
						
							
							
							
							
							
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Oddvar Moe
							
						 
					 | 
					
						
						
							
						
						c04d90c533
					 | 
					
						
						
							
							Merge pull request #149 from elliotkillick/WorkFolders
						
						
						
						
						
						
						
						Create WorkFolders.yml 
						
						
					 | 
					
						2021-10-22 16:26:50 +02:00 | 
					
					
						
						
						
							
							
							
							
							
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Oddvar Moe
							
						 
					 | 
					
						
						
							
						
						8c1b97629b
					 | 
					
						
						
							
							Merge pull request #146 from elliotkillick/PrintBrm
						
						
						
						
						
						
						
						Create PrintBrm.yml 
						
						
					 | 
					
						2021-10-22 16:21:21 +02:00 | 
					
					
						
						
						
							
							
							
							
							
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Oddvar Moe
							
						 
					 | 
					
						
						
							
						
						d9e31e2291
					 | 
					
						
						
							
							Rename fltMC.yml to FltMC.yml
						
						
						
						
						
						
					 | 
					
						2021-10-22 16:04:27 +02:00 | 
					
					
						
						
						
							
							
							
							
							
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Oddvar Moe
							
						 
					 | 
					
						
						
							
						
						6bda2344eb
					 | 
					
						
						
							
							Rename certoc.yml to Certoc.yml
						
						
						
						
						
						
					 | 
					
						2021-10-22 16:04:12 +02:00 | 
					
					
						
						
						
							
							
							
							
							
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Oddvar Moe
							
						 
					 | 
					
						
						
							
						
						e32f944030
					 | 
					
						
						
							
							Merge pull request #162 from esebese/master
						
						
						
						
						
						
						
						Create certoc.yml 
						
						
					 | 
					
						2021-10-22 16:02:20 +02:00 | 
					
					
						
						
						
							
							
							
							
							
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Oddvar Moe
							
						 
					 | 
					
						
						
							
						
						985bda094e
					 | 
					
						
						
							
							Merge pull request #164 from eral4m/master
						
						
						
						
						
						
						
						Create Stordiag.yml 
						
						
					 | 
					
						2021-10-22 15:58:35 +02:00 | 
					
					
						
						
						
							
							
							
							
							
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Oddvar Moe
							
						 
					 | 
					
						
						
							
						
						30a9f90f5f
					 | 
					
						
						
							
							Update Stordiag.yml
						
						
						
						
						
						
					 | 
					
						2021-10-22 15:56:52 +02:00 | 
					
					
						
						
						
							
							
							
							
							
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Oddvar Moe
							
						 
					 | 
					
						
						
							
						
						a55e2249c1
					 | 
					
						
						
							
							Merge branch 'master' into fixing-yaml-issues
						
						
						
						
						
						
					 | 
					
						2021-10-22 14:53:09 +02:00 | 
					
					
						
						
						
							
							
							
							
							
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Elliot Killick
							
						 
					 | 
					
						
						
							
						
						a1d7fd00c9
					 | 
					
						
						
							
							Acknowledge John Carroll and their resource
						
						
						
						
						
						
					 | 
					
						2021-10-21 05:36:18 -04:00 | 
					
					
						
						
						
							
							
							
							
							
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								eral4m
							
						 
					 | 
					
						
						
							
						
						8b49ca2054
					 | 
					
						
						
							
							Update Stordiag.yml
						
						
						
						
						
						
					 | 
					
						2021-10-21 10:30:54 +01:00 | 
					
					
						
						
						
							
							
							
							
							
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								eral4m
							
						 
					 | 
					
						
						
							
						
						b723258dbf
					 | 
					
						
						
							
							Update Stordiag.yml
						
						
						
						
						
						
					 | 
					
						2021-10-21 10:30:31 +01:00 | 
					
					
						
						
						
							
							
							
							
							
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								eral4m
							
						 
					 | 
					
						
						
							
						
						6da5480936
					 | 
					
						
						
							
							Update Stordiag.yml
						
						
						
						
						
						
					 | 
					
						2021-10-21 10:14:04 +01:00 | 
					
					
						
						
						
							
							
							
							
							
							
							
							
						
					 |