SigmaHQ/rules/windows
Florian Roth 7cacc57313
Merge pull request #1733 from SigmaHQ/rule-devel
New hive file pattern for C# version of HiveNightmare
2021-07-24 16:41:51 +02:00
..
builtin Merge pull request #1731 from frack113/more_check 2021-07-24 11:10:00 +02:00
create_remote_thread Merging upstream updates 2021-07-01 12:18:30 +05:45
create_stream_hash Merging upstream updates 2021-07-01 12:18:30 +05:45
deprecated Merging upstream updates 2021-07-01 12:18:30 +05:45
dns_query Removed EventID from generic DNS query rule 2021-07-08 07:41:11 +02:00
driver_load Merging upstream updates 2021-07-01 12:18:30 +05:45
file_delete Added rule for deletion of DLLs by PrintNightmare 2021-07-01 16:33:55 +05:45
file_event refactor: new file pattern SeriousSAM 2021-07-24 16:13:36 +02:00
image_load Merge branch 'config-adjustments' into rule-devel 2021-07-14 08:35:47 +02:00
malware Update win_mal_flowcloud.yml 2021-07-22 11:09:45 +02:00
network_connection Merge branch 'master' into master 2021-07-11 00:32:55 +02:00
other fix missing references and duplicate UUID 2021-07-15 11:06:54 +02:00
pipe_created Merging upstream updates 2021-07-01 12:18:30 +05:45
powershell Add check for status and level 2021-07-22 19:25:51 +02:00
process_access fix 3 times the same name file 2021-07-02 11:01:07 +02:00
process_creation Merge pull request #1733 from SigmaHQ/rule-devel 2021-07-24 16:41:51 +02:00
raw_access_thread Merging upstream updates 2021-07-01 12:18:30 +05:45
registry_event Update sysmon_dns_over_https_enabled.yml 2021-07-22 12:42:53 -05:00
sysmon Update sysmon_cve_2021_31979_cve_2021_33771_exploits.yml 2021-07-17 06:49:37 +07:00
wmi_event Merging upstream updates 2021-07-01 12:18:30 +05:45