SigmaHQ/rules/network
2020-06-24 17:04:04 +02:00
..
cisco/aaa Initial round of subtechnique updates 2020-06-16 14:46:08 -06:00
zeek fix: duplicate IDs 2020-06-24 17:04:04 +02:00
net_apt_equationgroup_c2.yml refactor: moved rues from 'apt' folder in respective folders 2020-02-01 17:59:26 +01:00
net_dns_c2_detection.yml resolve conflicts with rule IDs; restored and deprecated sysmon_mimikatz_detection_lsass.yml 2019-11-19 02:11:19 +01:00
net_high_dns_bytes_out.yml Rule fixes 2020-02-20 23:00:16 +01:00
net_high_dns_requests_rate.yml Rule fixes 2020-02-20 23:00:16 +01:00
net_high_null_records_requests_rate.yml Rule fixes 2020-02-20 23:00:16 +01:00
net_high_txt_records_requests_rate.yml Rule fixes 2020-02-20 23:00:16 +01:00
net_mal_dns_cobaltstrike.yml Added UUIDs to rules 2019-11-12 23:12:27 +01:00
net_susp_dns_b64_queries.yml Added UUIDs to rules 2019-11-12 23:12:27 +01:00
net_susp_dns_txt_exec_strings.yml Initial round of subtechnique updates 2020-06-16 14:46:08 -06:00
net_susp_network_scan.yml fix: fixed missing date fields in other files 2020-01-30 15:32:39 +01:00
net_susp_telegram_api.yml Added UUIDs to rules 2019-11-12 23:12:27 +01:00