Commit Graph

  • 285ef35e9b
    fixing indents xenoscr 2022-09-10 18:11:14 -0400
  • 059f2419df
    Attempting to fix pyKwalify checking xenoscr 2022-09-10 18:08:58 -0400
  • 73d02562cd
    Attempting to fix pyKwalify checking xenoscr 2022-09-10 18:05:47 -0400
  • 9955d4ea77
    Adding pyKwalify checking xenoscr 2022-09-10 18:03:38 -0400
  • f6761fad95
    restoring push yamllint action xenoscr 2022-09-10 17:33:11 -0400
  • e25a0e7cb8
    lint changes for push xenoscr 2022-09-10 17:24:38 -0400
  • c64d355075
    lint changes for push xenoscr 2022-09-10 17:17:55 -0400
  • 26c7c40413
    changing linter xenoscr 2022-09-10 17:06:21 -0400
  • 4990f5e81d
    fixing workflow xenoscr 2022-09-10 16:42:26 -0400
  • f64f0d457e
    Changing linter xenoscr 2022-09-10 16:38:40 -0400
  • 68aff84291
    adding config xenoscr 2022-09-10 07:22:41 -0400
  • 167ae89d1c
    update yaml-lint xenoscr 2022-09-10 07:02:01 -0400
  • 8810e30f0a
    Fix incorrect decodehex command syntax (#230) Ryan Stamp 2022-09-02 13:44:23 -0400
  • 68c14b894c
    Update UtilityFunctions.yml (#228) securepeacock 2022-09-02 13:42:59 -0400
  • e1df4e9f83
    Merge remote-tracking branch 'upstream/master' into windows_11_sprint Wietze 2022-09-02 17:23:45 +0100
  • c5c227a7ba
    added sigma detection for pester Oddvar Moe 2022-08-24 12:32:48 +0200
  • 5a38aa722f
    Adjusted comment in command Oddvar Moe 2022-08-23 15:47:17 +0200
  • 4b99cadd85
    Update pester.bat with an additional example Oddvar Moe 2022-08-23 15:44:57 +0200
  • 400158f2df
    Add sigma references to CL_LoadAssembly, CLMutexVerifiers entries (#221) Wietze 2022-09-02 17:16:58 +0100
  • 9b70f38986
    Create Ldifde.yml Grzegorz Tworek 2022-08-31 17:58:30 +0200
  • 68a6f0a35f added sigma detection for pester Oddvar Moe 2022-08-24 12:32:48 +0200
  • 4b564464fd Added external reference for Rundll32 721574n 2022-08-24 12:11:31 +0200
  • c53a8ea06e Adjusted comment in command Oddvar Moe 2022-08-23 15:47:17 +0200
  • fdc1b2c827 Update pester.bat with an additional example Oddvar Moe 2022-08-23 15:44:57 +0200
  • c9d42cf968 cleaning spaces d1vious 2022-08-11 18:36:09 -0400
  • e77f8d017a adding splunk detections to the lolbas yml d1vious 2022-08-11 18:33:04 -0400
  • da469d0652
    Doc update fslds 2022-08-08 20:40:26 +0000
  • 3162825fdc
    Split procdump name pattern into two actual names. fslds 2022-08-08 20:27:04 +0000
  • 55111b05b2
    punctuation fslds 2022-08-08 20:22:58 +0000
  • fbff11e632
    Added explanatory comments fslds 2022-08-08 20:20:08 +0000
  • c67eaec5cf
    Adding aliases key to YAML template fslds 2022-08-08 20:18:04 +0000
  • 8d3d6b3e85 adds .NET Core createdump.exe Daniel Santos 2022-08-05 11:50:22 -0500
  • 167556ffac adding script, still borked d1vious 2022-08-04 14:25:50 -0400
  • efe721d260
    Update ProtocolHandler.yml C-h4ck-0 2022-08-02 17:14:22 +0300
  • 2d8696c629
    Update MsoHtmEd.yml C-h4ck-0 2022-08-02 17:14:13 +0300
  • 6b2b755585
    Update Mshta.yml C-h4ck-0 2022-08-02 17:13:38 +0300
  • 635b3d8ccc
    Update Presentationhost.yml C-h4ck-0 2022-08-02 17:12:16 +0300
  • 31c8562ff2
    Add download functionality to PresentationHost.exe C-h4ck-0 2022-08-02 17:11:04 +0300
  • 8fa0db0b54
    Add download functionality to Mshta.exe C-h4ck-0 2022-08-02 17:06:26 +0300
  • d5f06ee936
    fix deleted word C-h4ck-0 2022-08-02 17:02:38 +0300
  • 41d3bec8d9
    Add download functionality to InstallUtil.exe C-h4ck-0 2022-08-02 16:59:37 +0300
  • ef34c383cb
    Update ConfigSecurityPolicy.yml C-h4ck-0 2022-08-02 16:51:24 +0300
  • bc7e3bf235
    Add download functionality to ConfigSecurityPolicy.exe C-h4ck-0 2022-08-02 16:50:43 +0300
  • 61f6e3a16b
    Add MSPUB.exe C-h4ck-0 2022-08-02 16:37:51 +0300
  • 8a20300783
    Update MsoHtmEd.yml C-h4ck-0 2022-08-02 16:35:49 +0300
  • 3afe6aac23
    Add 2 new MS Office downloaders C-h4ck-0 2022-08-01 11:44:51 +0300
  • 9ac549b19c
    Update Dnscmd.yml Daniel Gott 2022-07-31 18:04:01 -0400
  • 3086458ef4 Create wt.yml Nasreddine Bencherchali 2022-07-27 13:15:20 +0100
  • 2d95c1a9d4
    update Mofcomp.yml Daniel Gott 2022-07-19 18:21:55 -0400
  • 9814c950c8
    Update Mofcomp.yml Daniel Gott 2022-07-19 13:13:39 -0400
  • a739e57bff
    Create Mofcomp.yml Daniel Gott 2022-07-19 13:08:56 -0400
  • c7b639d3d6
    Update Cmd.yml Daniel Gott 2022-07-19 12:14:03 -0400
  • d80ca43788
    Update java.yml piuppi 2022-07-05 10:13:16 +0200
  • 4597523f08
    Update java.yml piuppi 2022-07-04 16:00:27 +0200
  • 6c94e9add5
    Create java.yml piuppi 2022-07-04 15:11:13 +0200
  • 026d422953
    Create Nltest.yml Daniel Gott 2022-06-20 17:06:15 -0400
  • ca5c3b8d49 Create OpenConsole.yml Nasreddine Bencherchali 2022-06-17 12:04:37 +0100
  • 816d3ab27b
    Fix incorrect decodehex command syntax Ryan Stamp 2022-06-16 11:47:51 -0400
  • ddce7efd1f Add/Update LOLBINS Nasreddine Bencherchali 2022-06-13 23:57:36 +0100
  • 78eb8b1abf
    Update UtilityFunctions.yml securepeacock 2022-06-10 19:43:34 -0400
  • 8283d8d915
    Delete Dllhost.yml Oddvar Moe 2022-06-09 10:51:40 +0200
  • 91350057ce
    Add sigma references to CL_LoadAssembly, CLMutexVerifiers entries (#221) frack113 2022-06-04 12:50:35 +0200
  • d2bf8ae88b
    Update Remote.yml securepeacock 2022-06-02 21:36:43 -0400
  • 16a06ab558
    Update Fsi.yml securepeacock 2022-06-02 21:33:15 -0400
  • 42d7455161
    Update FsiAnyCpu.yml securepeacock 2022-06-02 21:29:39 -0400
  • 1657795b0c
    Update VisualUiaVerifyNative.yml securepeacock 2022-06-02 09:34:14 -0400
  • a703e9251e
    Update Wfc.yml securepeacock 2022-06-02 09:31:52 -0400
  • e64130456c
    Update Powerpnt.yml securepeacock 2022-06-02 01:12:09 -0400
  • d7177fed79 Add sigma ref frack113 2022-05-28 17:02:54 +0200
  • 539c1da0fa
    Merge branch 'master' into windows_11_sprint Wietze 2022-05-25 09:25:42 +0100
  • 0dc56e9148
    Merge pull request #220 from tsale/patch-1 Chris "Lopi" Spehn 2022-05-24 17:33:07 -0600
  • 314f585da9
    Update Hh.yml Kostas 2022-05-24 15:29:03 -0700
  • aae794c59c
    Update Hh.yml Kostas 2022-05-24 14:23:18 -0700
  • 7797a1967c
    Merge branch 'master' into windows_11_sprint Wietze 2022-05-24 08:38:50 +0100
  • f85eeb748a
    Add Sigma references to conhost, imewdbld, ie4uinit, ilasm, offlinescannershell and replace (#219) frack113 2022-05-23 13:35:58 +0200
  • 0b59fbd108 Add Sigma ref frack113 2022-05-22 11:35:51 +0200
  • 36945392ca
    Merge pull request #201 from wietze/new/Conhost Chris "Lopi" Spehn 2022-05-19 10:27:10 -0600
  • e872ce028b
    Merge pull request #214 from jstnk9/master Chris "Lopi" Spehn 2022-05-19 10:21:21 -0600
  • 82f19b22e7
    Merge pull request #217 from ManuelBerrueta/master Chris "Lopi" Spehn 2022-05-19 10:19:22 -0600
  • 68b772a567 Updated yml/OtherMSBinaries/Sqlps.yml, used recently in a campaign shared my Microsoft Security Intelligence. Would be useful reference for Red Teamers/Offensive Security Engineers as well as Blue Teamers/Defenders who reference this open source project/library. ManuelBerrueta 2022-05-19 07:12:37 -0700
  • 3ce3ec6656
    Merge pull request #216 from TactiKoolSec/master Chris "Lopi" Spehn 2022-05-19 07:32:58 -0600
  • 90b6082f1d Update Rdrleakdiag.yml John Dwyer 2022-05-19 13:30:11 +0000
  • e2493d8ccf Detection Resources and Other Updates (LOLBAS-Project#84) John Dwyer 2022-05-18 19:00:26 +0000
  • d935f096fd Added rdrleakdiag dump John Dwyer 2022-05-18 18:58:04 +0000
  • d1738b946b
    Adding various Sigma references (#213) frack113 2022-05-17 10:18:45 +0200
  • c47a138a9b Fix Usecase frack113 2022-05-17 06:36:31 +0200
  • 785ca741ea Add sigme ref frack113 2022-05-17 06:33:12 +0200
  • 3571a7ad88
    Create AccCheckConsole.yml (#187) bohops 2022-05-15 16:55:16 -0400
  • 7c2f3231d3
    Adding Dump64.exe (#182) mrd0x 2022-05-15 16:21:45 -0400
  • b333db4f91
    Fixing typo (ieaframe -> ieframe) Wietze 2022-05-15 21:06:33 +0100
  • 2c31ad10ab
    Various changes Wietze 2022-05-15 20:46:58 +0100
  • 79f4cbdb7f
    Changed tid to T1105 for downloads (#195) akshat pradhan 2022-05-16 01:08:24 +0530
  • 9bd9c88aac
    Update IMEWDBLD.yml Wietze 2022-05-15 20:33:36 +0100
  • d4451e6b26
    Fixing format, adding Windows 11 Wietze 2022-05-15 20:27:27 +0100
  • 223bd2dd0f
    Update Createdump.yml Wietze 2022-05-15 20:23:30 +0100
  • d3e2416e03
    Filename casing Wietze 2022-05-15 20:19:37 +0100
  • 7d435ccc09
    Small fixes Wietze 2022-05-15 20:18:25 +0100
  • 86853edd51
    Fix extension Wietze 2022-05-15 20:17:16 +0100
  • b04fc08ab5
    Updated Windows versions Wietze 2022-05-15 20:16:58 +0100
  • bc51a42b96
    Minor fixes Wietze 2022-05-15 20:10:23 +0100