SigmaHQ/rules/network
Florian Roth 4abebd98d9
Merge pull request #1418 from SigmaHQ/rule-devel
Fixing false positives with newest OSCD rules
2021-04-09 17:26:02 +02:00
..
cisco/aaa Second round 2020-09-15 07:02:30 -06:00
zeek Merge branch 'pr-1158' 2021-04-08 23:01:54 +02:00
net_apt_equationgroup_c2.yml Second round 2020-09-15 07:02:30 -06:00
net_dns_c2_detection.yml Second round 2020-09-15 07:02:30 -06:00
net_high_dns_bytes_out.yml Second round 2020-09-15 07:02:30 -06:00
net_high_dns_requests_rate.yml Second round 2020-09-15 07:02:30 -06:00
net_high_null_records_requests_rate.yml Second round 2020-09-15 07:02:30 -06:00
net_high_txt_records_requests_rate.yml Second round 2020-09-15 07:02:30 -06:00
net_mal_dns_cobaltstrike.yml refactor: change level 2021-03-24 12:38:00 +01:00
net_susp_dns_b64_queries.yml Update net_susp_dns_b64_queries.yml 2020-10-15 23:10:57 -03:00
net_susp_dns_txt_exec_strings.yml Update net_susp_dns_txt_exec_strings.yml 2020-10-15 23:11:16 -03:00
net_susp_network_scan.yml Second round 2020-09-15 07:02:30 -06:00
net_susp_telegram_api.yml Second round 2020-09-15 07:02:30 -06:00
net_wannacry_killswitch_domain.yml fix: duplicate ID 2020-12-13 18:59:04 +01:00