SigmaHQ/rules/windows
Florian Roth 6d0d58dfe2
Merge pull request #1602 from BlackB0lt/patch-11
Update and rename to av_printernightmare_cve_2021_34527.yml
2021-07-02 17:15:10 +02:00
..
builtin Merge pull request #1598 from SigmaHQ/rule-devel 2021-07-01 12:05:10 +02:00
create_remote_thread Merging upstream updates 2021-07-01 12:18:30 +05:45
create_stream_hash Merging upstream updates 2021-07-01 12:18:30 +05:45
deprecated Merging upstream updates 2021-07-01 12:18:30 +05:45
dns_query Merging upstream updates 2021-07-01 12:18:30 +05:45
driver_load Merging upstream updates 2021-07-01 12:18:30 +05:45
file_delete Added rule for deletion of DLLs by PrintNightmare 2021-07-01 16:33:55 +05:45
file_event Added new path 2021-07-01 16:24:07 +05:45
image_load Updated PrintNightmare Sysmon Imageload based rule with modifiers 2021-07-01 21:34:53 +02:00
malware Update av_printernightmare_cve_2021_34527.yml 2021-07-02 14:42:04 +07:00
network_connection Merging upstream updates 2021-07-01 12:18:30 +05:45
other Merging upstream updates 2021-07-01 12:18:30 +05:45
pipe_created Merging upstream updates 2021-07-01 12:18:30 +05:45
powershell Merging upstream updates 2021-07-01 12:18:30 +05:45
process_access fix 3 times the same name file 2021-07-02 11:01:07 +02:00
process_creation fix 3 times the same name file 2021-07-02 11:01:07 +02:00
raw_access_thread Merging upstream updates 2021-07-01 12:18:30 +05:45
registry_event fix 3 times the same name file 2021-07-02 11:01:07 +02:00
sysmon Merging upstream updates 2021-07-01 12:18:30 +05:45
wmi_event Merging upstream updates 2021-07-01 12:18:30 +05:45