SigmaHQ/rules/windows
2020-07-03 11:20:36 +02:00
..
builtin Update win_not_allowed_rdp_access.yml 2020-06-30 10:03:00 +02:00
deprecated fix: buggy rule 2020-05-23 18:32:02 +02:00
driver_load fix: bugfix and cosmetics 2020-06-24 18:10:58 +02:00
file_event fix: bugs in rule and title 2020-07-03 09:54:10 +02:00
image_load refactor: sysmon rule cleanup > generlization 2020-07-01 10:58:39 +02:00
malware Further subtechnique updates 2020-06-17 11:31:40 -06:00
network_connection refactor: sysmon rule cleanup > generlization 2020-07-01 10:58:39 +02:00
other FIX: lint error for title 2020-06-28 11:05:19 +02:00
powershell Added new rule for pwsh_xor_cmd 2020-06-29 22:09:58 +02:00
process_access fix: bugfix and cosmetics 2020-06-24 18:10:58 +02:00
process_creation refactor: new way to write that rule 2020-07-03 11:20:36 +02:00
registry_event fix: duplicate IDs and rule titles 2020-07-01 16:37:27 +02:00
sysmon refactor: sysmon rule cleanup > generlization 2020-07-01 10:58:39 +02:00