SigmaHQ/rules/windows
2019-11-05 02:38:36 +03:00
..
builtin rule: mimikatz use extended 2019-10-11 18:50:33 +02:00
malware rules: AV rules updated to reflect 1.7.2 auf AV cheat sheet 2019-10-04 16:17:34 +02:00
other Converted to use the new process_creation data source 2019-03-09 20:57:59 +03:00
powershell Update powershell_data_compressed.yml 2019-11-05 02:38:36 +03:00
process_creation Update and rename win_system_owner_user_discovery.yml to win_local_system_owner_account_discovery.yml 2019-11-05 02:31:20 +03:00
sysmon Delete sysmon_xsl_script_processing.yml 2019-11-04 23:47:23 +03:00