SigmaHQ/rules/windows
Florian Roth 8f66803ddf
Merge pull request #927 from Neo23x0/rule-devel
improved CVE-2020-1350 rule
2020-07-15 12:06:31 +02:00
..
builtin Merge pull request #924 from Neo23x0/devel 2020-07-14 18:15:29 +02:00
deprecated fix: buggy rule 2020-05-23 18:32:02 +02:00
driver_load fix: bugfix and cosmetics 2020-06-24 18:10:58 +02:00
file_event Re-fix sysmon rules that are lost changes with category refactoring. 2020-07-06 10:55:42 -04:00
image_load be more specific about file location 2020-07-09 13:33:59 -04:00
malware Further subtechnique updates 2020-06-17 11:31:40 -06:00
network_connection Introduced dns_query log source category 2020-07-05 23:29:51 +02:00
other Improved rule 2020-07-07 23:18:07 +02:00
powershell fix: wrong MITRE ATT&CK ids used in the beta version 2020-07-14 17:53:32 +02:00
process_access fix: broken links 2020-07-03 11:22:06 +02:00
process_creation Merge pull request #927 from Neo23x0/rule-devel 2020-07-15 12:06:31 +02:00
registry_event Merge pull request #901 from brachera/master 2020-07-10 16:42:02 +02:00
sysmon fix: FPs with RedMimicry rule 2020-07-07 10:11:58 +02:00