SigmaHQ/rules/windows
2020-09-02 12:30:34 +02:00
..
builtin fix: FPs with McAfee and CyberReason 2020-09-02 12:30:34 +02:00
deprecated fix: buggy rule 2020-05-23 18:32:02 +02:00
driver_load fix: bugfix and cosmetics 2020-06-24 18:10:58 +02:00
file_event Updated tags to include sub-techniques 2020-07-18 02:50:57 +01:00
image_load Updated tags to include sub-techniques 2020-07-18 02:50:57 +01:00
malware Further subtechnique updates 2020-06-17 11:31:40 -06:00
network_connection Updated tags to include sub-techniques 2020-07-18 02:50:57 +01:00
other Updated to include extra registry key 2020-07-18 02:37:11 +01:00
powershell Merge branch 'master' of github.com:Neo23x0/sigma 2020-07-15 10:27:33 -04:00
process_access Updated invoke_phantom with sub-technique mapping 2020-07-18 02:32:42 +01:00
process_creation rule: Snatch ransomware 2020-08-26 09:42:34 +02:00
registry_event Updated suspicious service with sub-techniques 2020-07-18 02:40:22 +01:00
sysmon Update sysmon_password_dumper_lsass.yml 2020-07-23 14:31:21 +02:00