This website requires JavaScript.
Explore
Help
Register
Sign In
valitydev
/
SigmaHQ
Watch
14
Star
0
Fork
0
You've already forked SigmaHQ
mirror of
https://github.com/valitydev/SigmaHQ.git
synced
2024-11-08 02:08:54 +00:00
Code
Issues
Actions
Packages
Projects
Releases
Wiki
Activity
5a15687c6c
SigmaHQ
/
rules
/
windows
History
ecco
5a15687c6c
fix rule: task manager as parent: task manager can be run with higher privileges (show processes from all users --> UAC) and its parent is still the old taskmgr
2019-09-27 11:06:21 -04:00
..
builtin
Merge pull request
#443
from EccoTheFlintstone/aduserbck
2019-09-25 17:43:22 +02:00
malware
Rule: separate Ryuk rule created for VBurovs strings
2019-08-06 10:33:46 +02:00
other
Converted to use the new process_creation data source
2019-03-09 20:57:59 +03:00
powershell
powershell false positives
2019-09-06 03:54:19 -04:00
process_creation
fix rule: task manager as parent: task manager can be run with higher privileges (show processes from all users --> UAC) and its parent is still the old taskmgr
2019-09-27 11:06:21 -04:00
sysmon
sysmon rules cleanup and move to process_creation
2019-09-11 10:24:43 -04:00