SigmaHQ/rules
Florian Roth 0eb5fd75e1
Merge pull request #446 from EccoTheFlintstone/eventclear
move wevtutil / fsutil events from ransomware to dedicated rules
2019-09-28 10:29:03 +02:00
..
application Fixes for Elasticsearch query correctness CI tests 2018-04-09 22:33:29 +02:00
apt rule: emissary panda activity 2019-09-03 15:35:33 +02:00
compliance Added level 2019-08-05 19:51:22 +02:00
linux Update lnx_shell_priv_esc_prep.yml 2019-09-06 11:29:42 -04:00
network Merge pull request #315 from P4T12ICK/feature/net_dnc_c2_detection 2019-05-10 00:12:39 +02:00
proxy rule: proxy ua unknown zero day implant 2019-09-24 18:24:48 +02:00
web Web Source Code Enumeration via .git 2019-06-08 22:40:28 -04:00
windows Merge pull request #446 from EccoTheFlintstone/eventclear 2019-09-28 10:29:03 +02:00