SigmaHQ/rules/network
2019-11-19 02:11:19 +01:00
..
net_dns_c2_detection.yml resolve conflicts with rule IDs; restored and deprecated sysmon_mimikatz_detection_lsass.yml 2019-11-19 02:11:19 +01:00
net_high_dns_bytes_out.yml add tieto dns exfiltration rules 2019-10-25 04:30:55 +02:00
net_high_dns_requests_rate.yml add tieto dns exfiltration rules 2019-10-25 04:30:55 +02:00
net_high_null_records_requests_rate.yml add tieto dns exfiltration rules 2019-10-25 04:30:55 +02:00
net_high_txt_records_requests_rate.yml add tieto dns exfiltration rules 2019-10-25 04:30:55 +02:00
net_mal_dns_cobaltstrike.yml Added UUIDs to rules 2019-11-12 23:12:27 +01:00
net_susp_dns_b64_queries.yml Added UUIDs to rules 2019-11-12 23:12:27 +01:00
net_susp_dns_txt_exec_strings.yml Added UUIDs to rules 2019-11-12 23:12:27 +01:00
net_susp_network_scan.yml Added UUIDs to rules 2019-11-12 23:12:27 +01:00
net_susp_telegram_api.yml Added UUIDs to rules 2019-11-12 23:12:27 +01:00