.. |
builtin
|
Merge pull request #1755 from SigmaHQ/rule-devel
|
2021-07-28 18:56:28 +02:00 |
create_remote_thread
|
Merging upstream updates
|
2021-07-01 12:18:30 +05:45 |
create_stream_hash
|
Merging upstream updates
|
2021-07-01 12:18:30 +05:45 |
deprecated
|
Merging upstream updates
|
2021-07-01 12:18:30 +05:45 |
dns_query
|
Removed EventID from generic DNS query rule
|
2021-07-08 07:41:11 +02:00 |
driver_load
|
Merging upstream updates
|
2021-07-01 12:18:30 +05:45 |
file_delete
|
Added rule for deletion of DLLs by PrintNightmare
|
2021-07-01 16:33:55 +05:45 |
file_event
|
HiveNightmare and Relay attack tools adjustments
|
2021-07-26 10:59:35 +02:00 |
image_load
|
Merge branch 'config-adjustments' into rule-devel
|
2021-07-14 08:35:47 +02:00 |
malware
|
Update win_mal_flowcloud.yml
|
2021-07-22 11:09:45 +02:00 |
network_connection
|
Merge branch 'master' into master
|
2021-07-11 00:32:55 +02:00 |
other
|
fix missing references and duplicate UUID
|
2021-07-15 11:06:54 +02:00 |
pipe_created
|
fix: re CS rule
|
2021-07-30 08:24:41 +02:00 |
powershell
|
fix EventID: 4104 ScriptBlockText
|
2021-08-04 14:49:50 +02:00 |
process_access
|
fix: remove unnecessary single value list
|
2021-08-04 15:50:39 +02:00 |
process_creation
|
SeriousSAM PowerShell rule
|
2021-07-29 18:12:10 +02:00 |
raw_access_thread
|
Merging upstream updates
|
2021-07-01 12:18:30 +05:45 |
registry_event
|
Merge pull request #1775 from austinsonger/sysmon_disabled_pua_protection_on_microsoft_defender.yml
|
2021-08-05 15:42:17 +02:00 |
sysmon
|
Update sysmon_cve_2021_31979_cve_2021_33771_exploits.yml
|
2021-07-17 06:49:37 +07:00 |
wmi_event
|
Merging upstream updates
|
2021-07-01 12:18:30 +05:45 |