SigmaHQ/rules/apt
2018-12-04 23:35:23 +01:00
..
apt_apt29_thinktanks.yml Rule: APT29 campaign against US think tanks 2018-12-04 17:04:03 +01:00
apt_apt29_tor.yml Add tags to APT rules 2018-07-25 09:50:01 +02:00
apt_carbonpaper_turla.yml Add tags to APT rules 2018-07-25 09:50:01 +02:00
apt_chafer_mar18.yml Add tags to APT rules 2018-07-25 09:50:01 +02:00
apt_cloudhopper.yml Add tags to APT rules 2018-07-25 09:50:01 +02:00
apt_dragonfly.yml Replace "logsource: description" with "definition" to match the specs 2018-11-15 09:00:06 +03:00
apt_elise.yml Add tags to APT rules 2018-07-25 09:50:01 +02:00
apt_equationgroup_c2.yml Fixed log source and field names 2018-08-04 22:58:19 +02:00
apt_equationgroup_dll_u_load.yml Replace "logsource: description" with "definition" to match the specs 2018-11-15 09:00:06 +03:00
apt_equationgroup_lnx.yml Add tags to APT rules 2018-07-25 09:50:01 +02:00
apt_hurricane_panda.yml Replace "logsource: description" with "definition" to match the specs 2018-11-15 09:00:06 +03:00
apt_pandemic.yml Add tags to APT rules 2018-07-25 09:50:01 +02:00
apt_slingshot.yml Replace "logsource: description" with "definition" to match the specs 2018-11-15 09:00:06 +03:00
apt_sofacy_zebrocy.yml APT28 Zebrocy rule 2018-11-22 19:14:07 +01:00
apt_sofacy.yml Replace "logsource: description" with "definition" to match the specs 2018-11-15 09:00:06 +03:00
apt_stonedrill.yml Add tags to APT rules 2018-07-25 09:50:01 +02:00
apt_ta17_293a_ps.yml Add tags to APT rules 2018-07-25 09:50:01 +02:00
apt_tropictrooper.yml adding new rules detecting recently active APTs 2018-12-03 09:42:29 +02:00
apt_turla_commands.yml Rule fix 2018-08-26 22:35:35 +02:00
apt_turla_namedpipes.yml Replace "logsource: description" with "definition" to match the specs 2018-11-15 09:00:06 +03:00
apt_turla_service_png.yml Turla PNG Dropper Service Name 2018-11-23 08:46:20 +01:00
apt_unidentified_nov_18.yml adding new rules detecting recently active APTs 2018-12-03 09:42:29 +02:00
apt_zxshell.yml Add tags to APT rules 2018-07-25 09:50:01 +02:00
crime_fireball.yml Add tags to APT rules 2018-07-25 09:50:01 +02:00