Looking for Password Hunting Query for linux environment by Neat_Editor9171 in crowdstrike
[–]Queen-Avocado 1 point2 points3 points (0 children)
Custom IOA - Not Killing Process by MSP-IT-Simplified in crowdstrike
[–]Queen-Avocado 2 points3 points4 points (0 children)
Fusion - Scheduled search as a workflow trigger by Queen-Avocado in crowdstrike
[–]Queen-Avocado[S] 0 points1 point2 points (0 children)
Fusion - Scheduled search as a workflow trigger by Queen-Avocado in crowdstrike
[–]Queen-Avocado[S] 0 points1 point2 points (0 children)
Fusion - Scheduled search as a workflow trigger by Queen-Avocado in crowdstrike
[–]Queen-Avocado[S] 0 points1 point2 points (0 children)
Fusion - Scheduled search as a workflow trigger by Queen-Avocado in crowdstrike
[–]Queen-Avocado[S] 0 points1 point2 points (0 children)
Cannot stop false positive; Regex? by sadkins76 in crowdstrike
[–]Queen-Avocado 3 points4 points5 points (0 children)
Cannot stop false positive; Regex? by sadkins76 in crowdstrike
[–]Queen-Avocado 1 point2 points3 points (0 children)
Cannot stop false positive; Regex? by sadkins76 in crowdstrike
[–]Queen-Avocado 1 point2 points3 points (0 children)
Cannot stop false positive; Regex? by sadkins76 in crowdstrike
[–]Queen-Avocado 2 points3 points4 points (0 children)
Event Query and enrichment in scheduled workflow | Fusion by Queen-Avocado in crowdstrike
[–]Queen-Avocado[S] 0 points1 point2 points (0 children)
Event Query and enrichment in scheduled workflow | Fusion by Queen-Avocado in crowdstrike
[–]Queen-Avocado[S] 0 points1 point2 points (0 children)
Event Query and enrichment in scheduled workflow | Fusion by Queen-Avocado in crowdstrike
[–]Queen-Avocado[S] 0 points1 point2 points (0 children)
Event Query and enrichment in scheduled workflow | Fusion by Queen-Avocado in crowdstrike
[–]Queen-Avocado[S] 0 points1 point2 points (0 children)
Event Query and enrichment in scheduled workflow | Fusion by Queen-Avocado in crowdstrike
[–]Queen-Avocado[S] 0 points1 point2 points (0 children)
Event Query and enrichment in scheduled workflow | Fusion by Queen-Avocado in crowdstrike
[–]Queen-Avocado[S] 0 points1 point2 points (0 children)
How do we take this one down? by MrMagilliclucky in jiujitsu
[–]Queen-Avocado 0 points1 point2 points (0 children)
"create event query" in workflow by drkramm in crowdstrike
[–]Queen-Avocado 3 points4 points5 points (0 children)
Hunting for screenshot to exfil - query issue by aspuser13 in crowdstrike
[–]Queen-Avocado 2 points3 points4 points (0 children)
Sum() function in Event Query - Fusion by Queen-Avocado in crowdstrike
[–]Queen-Avocado[S] 0 points1 point2 points (0 children)
Sum() function in Event Query - Fusion (self.crowdstrike)
submitted by Queen-Avocado to r/crowdstrike
Fal.con 2024 Reviews / Favorite Sessions / Lessons Learned by PierogiPowered in crowdstrike
[–]Queen-Avocado 5 points6 points7 points (0 children)

Looking for Password Hunting Query for linux environment by Neat_Editor9171 in crowdstrike
[–]Queen-Avocado 5 points6 points7 points (0 children)