mirror of
https://github.com/valitydev/SigmaHQ.git
synced 2024-11-08 02:08:54 +00:00
5f1e933b93
Sigma queries - defense evasion by tampering with svchost; recently released GALLIUM activity group IOCs |
||
---|---|---|
.. | ||
builtin | ||
malware | ||
other | ||
powershell | ||
process_creation | ||
sysmon |