SigmaHQ/rules/windows
yugoslavskiy def4a7dbb9
Merge pull request #1183 from nsaddler/lolbas106
[OSCD] LOLBAS CL_Invocation - process_creation
2021-01-06 00:17:01 +03:00
..
builtin Merge pull request #1177 from OpalSec/oscd 2021-01-06 00:16:34 +03:00
deprecated fix: buggy rule 2020-05-23 18:32:02 +02:00
driver_load Update sysmon_susp_driver_load.yml 2020-11-19 22:56:34 -03:00
file_event Merge pull request #1141 from omkar72/oscd-6 2021-01-05 23:22:36 +03:00
image_load Merge pull request #1139 from omkar72/oscd-4 2021-01-05 23:17:25 +03:00
malware Remove additional backslash 2020-11-19 23:15:38 -03:00
network_connection Remove additional backslash 2020-11-20 00:53:13 -03:00
other Merge pull request #1166 from drdoc/oscd 2021-01-06 00:12:34 +03:00
powershell Merge pull request #1177 from OpalSec/oscd 2021-01-06 00:16:34 +03:00
process_access Merge pull request #1077 from uchakin/oscd 2021-01-05 23:06:24 +03:00
process_creation Merge pull request #1183 from nsaddler/lolbas106 2021-01-06 00:17:01 +03:00
registry_event Merge pull request #1182 from nsaddler/lolbas80 2021-01-06 00:16:53 +03:00
sysmon Merge pull request #1179 from SanWieb/OSCD_regedit_3 2021-01-06 00:16:45 +03:00