Skip to content

Actions: 0xThiebaut/Signatures

Canadian Centre for Cyber Security YARA Specification

Actions

Loading...

Show workflow options

Create status badge

27 workflow runs
27 workflow runs
Event

Filter by event

Status

Filter by status

Branch
Actor

Filter by actor

Add SparkTar & SparkCockpit rules
Canadian Centre for Cyber Security YARA Specification #59: Commit 2f4a02c pushed by 0xThiebaut
March 22, 2024 09:58 1m 19s ivanti
March 22, 2024 09:58 1m 19s
Add PoshC2 detections/extractors
Canadian Centre for Cyber Security YARA Specification #58: Commit e306fc6 pushed by 0xThiebaut
January 16, 2024 22:05 1m 29s posh
January 16, 2024 22:05 1m 29s
Add PoshC2 detections/extractors
Canadian Centre for Cyber Security YARA Specification #57: Commit 3b1f4c4 pushed by 0xThiebaut
January 16, 2024 21:54 1m 25s posh
January 16, 2024 21:54 1m 25s
Add PoshC2 detections/extractors
Canadian Centre for Cyber Security YARA Specification #56: Commit 3d006d1 pushed by 0xThiebaut
January 16, 2024 21:39 1m 28s posh
January 16, 2024 21:39 1m 28s
Canadian Centre for Cyber Security YARA Specification
Canadian Centre for Cyber Security YARA Specification #55: Manually run by 0xThiebaut
January 16, 2024 21:33 1m 12s workflow
January 16, 2024 21:33 1m 12s
Add PoshC2 detections/extractors
Canadian Centre for Cyber Security YARA Specification #54: Commit 8fdef1d pushed by 0xThiebaut
January 16, 2024 21:16 44s posh
January 16, 2024 21:16 44s
Add PoshC2 detections/extractors
Canadian Centre for Cyber Security YARA Specification #53: Commit ac8920b pushed by 0xThiebaut
January 16, 2024 21:13 47s posh
January 16, 2024 21:13 47s
Add signatures following The DFIR Report's case 21619
Canadian Centre for Cyber Security YARA Specification #52: Commit c5bf3ed pushed by 0xThiebaut
June 14, 2023 09:10 1m 43s main
June 14, 2023 09:10 1m 43s
Add signatures following The DFIR Report's case 21619
Canadian Centre for Cyber Security YARA Specification #51: Commit c5bf3ed pushed by 0xThiebaut
June 14, 2023 08:54 1m 24s 21619
June 14, 2023 08:54 1m 24s
Correct disassembly comment
Canadian Centre for Cyber Security YARA Specification #50: Commit 67d491a pushed by 0xThiebaut
May 26, 2023 08:48 1m 32s main
May 26, 2023 08:48 1m 32s
Deduplicate XLL identifier
Canadian Centre for Cyber Security YARA Specification #49: Commit 760cbba pushed by 0xThiebaut
May 16, 2023 10:40 1m 39s main
May 16, 2023 10:40 1m 39s
Update README.md to mention YARA-CI pipeline
Canadian Centre for Cyber Security YARA Specification #48: Commit 34aa7c9 pushed by 0xThiebaut
May 13, 2023 19:21 1m 28s main
May 13, 2023 19:21 1m 28s
Drop condition from sus_pe_free_without_allocation
Canadian Centre for Cyber Security YARA Specification #47: Commit 81f4d53 pushed by 0xThiebaut
May 13, 2023 19:13 1m 21s main
May 13, 2023 19:13 1m 21s
Drop condition from sus_pe_free_without_allocation
Canadian Centre for Cyber Security YARA Specification #46: Commit 81f4d53 pushed by 0xThiebaut
May 13, 2023 19:08 1m 40s pe
pe
May 13, 2023 19:08 1m 40s
Add XLL xlAutoClose rule
Canadian Centre for Cyber Security YARA Specification #45: Commit b0956d1 pushed by 0xThiebaut
May 13, 2023 16:00 1m 24s main
May 13, 2023 16:00 1m 24s
Add XLL xlAutoClose rule
Canadian Centre for Cyber Security YARA Specification #44: Commit b0956d1 pushed by 0xThiebaut
May 13, 2023 15:47 1m 20s xll
xll
May 13, 2023 15:47 1m 20s
Add suspicious XLL and PE detections
Canadian Centre for Cyber Security YARA Specification #43: Commit f9d248a pushed by 0xThiebaut
May 13, 2023 14:54 2m 6s main
May 13, 2023 14:54 2m 6s
Add suspicious XLL and PE detections
Canadian Centre for Cyber Security YARA Specification #42: Commit f9d248a pushed by 0xThiebaut
May 13, 2023 14:48 1m 45s xll
xll
May 13, 2023 14:48 1m 45s
Add suspicious XLL and PE detections
Canadian Centre for Cyber Security YARA Specification #41: Commit 044738c pushed by 0xThiebaut
May 13, 2023 14:42 1m 24s xll
xll
May 13, 2023 14:42 1m 24s
Add suspicious XLL and PE detections
Canadian Centre for Cyber Security YARA Specification #40: Commit 0c4b222 pushed by 0xThiebaut
May 13, 2023 14:36 1m 21s xll
xll
May 13, 2023 14:36 1m 21s
Add suspicious XLL and PE detections
Canadian Centre for Cyber Security YARA Specification #39: Commit 963e130 pushed by 0xThiebaut
May 13, 2023 14:21 1m 29s xll
xll
May 13, 2023 14:21 1m 29s
Add suspicious XLL and PE detections
Canadian Centre for Cyber Security YARA Specification #38: Commit 8981e0e pushed by 0xThiebaut
May 13, 2023 14:20 1m 27s xll
xll
May 13, 2023 14:20 1m 27s
Add suspicious XLL and PE detections
Canadian Centre for Cyber Security YARA Specification #37: Commit 7c1c280 pushed by 0xThiebaut
May 13, 2023 13:26 1m 41s xll
xll
May 13, 2023 13:26 1m 41s
Add Havoc C2 and HellsHall syscalls
Canadian Centre for Cyber Security YARA Specification #36: Commit 9801c4d pushed by 0xThiebaut
April 11, 2023 07:03 1m 29s main
April 11, 2023 07:03 1m 29s
Add Havoc C2 and HellsHall syscalls
Canadian Centre for Cyber Security YARA Specification #35: Commit 9801c4d pushed by 0xThiebaut
April 11, 2023 07:01 1m 5s havoc
April 11, 2023 07:01 1m 5s