SigmaHQ/rules/windows
2020-05-23 09:09:58 +02:00
..
builtin remove false positives with cmd as child of services.exe (not specifically related to meterpreter/cobaltstrike) 2020-05-15 04:45:25 -04:00
deprecated Merge branch 'master' into oscd 2020-02-03 23:13:16 +01:00
malware Changed level to ciritcal 2020-05-11 10:40:23 +02:00
other fix: converted CRLF line break to LF 2020-03-25 14:36:34 +01:00
powershell fix incorrect use of action global 2020-05-06 22:53:02 +02:00
process_creation refactore: split up rule for CVE-2020-1048 into 2 rules 2020-05-23 09:09:58 +02:00
sysmon refactore: split up rule for CVE-2020-1048 into 2 rules 2020-05-23 09:09:58 +02:00