SigmaHQ/rules/windows
IeM e4d764ceba Create win_pass_the_hash.yml
Rule to detects the attack technique pass the hash which is used to move laterally inside the network
2017-03-08 18:04:31 +01:00
..
builtin Create win_pass_the_hash.yml 2017-03-08 18:04:31 +01:00
powershell Added expression 2017-03-05 22:45:54 +01:00
sysmon Sysmon PowerShell - Suspicious Param Combination 2017-03-05 23:51:39 +01:00