SigmaHQ/rules/linux
Thomas Patzke 5c465129bd Fixed rules
* Replaced unspecified logsource attribute 'type' with 'category'
* Usage of service 'auth' for linux logs
2017-09-11 00:35:52 +02:00
..
modsecurity ModSecurity rule: multiple blocks 2017-02-28 17:53:32 +01:00
lnx_buffer_overflows.yml Rule: Linux: buffer overflows 2017-03-01 08:38:33 +01:00
lnx_clamav.yml Bug and typo fixes 2017-03-14 14:52:28 +01:00
lnx_shell_susp_commands.yml Improved linux suspicious activity rule 2017-03-27 15:21:39 +02:00
lnx_shell_susp_log_entries.yml Linux Generic Rules 2017-05-02 20:32:38 +02:00
lnx_shellshock.yml Fixed parse errors 2017-08-02 22:49:15 +02:00
lnx_susp_failed_logons_single_source.yml Fixed rules 2017-09-11 00:35:52 +02:00
lnx_susp_ssh.yml Linux: Suspicious SSHD errors 2017-06-30 08:47:56 +02:00
lnx_susp_vsftp.yml Linux: Suspicious VSFTPD errors 2017-07-05 18:59:51 -06:00