-
Notifications
You must be signed in to change notification settings - Fork 25
Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
Sigma Rule Update (2023-02-24 21:09:55) (#321)
Co-authored-by: hach1yon <[email protected]>
- Loading branch information
1 parent
e41fe01
commit 2dd5318
Showing
38 changed files
with
264 additions
and
994 deletions.
There are no files selected for viewing
35 changes: 0 additions & 35 deletions
35
sigma/builtin/powershell/powershell_script/posh_ps_cl_invocation_lolscript_count.yml
This file was deleted.
Oops, something went wrong.
36 changes: 0 additions & 36 deletions
36
sigma/builtin/powershell/powershell_script/posh_ps_cl_mutexverifiers_lolscript_count.yml
This file was deleted.
Oops, something went wrong.
46 changes: 0 additions & 46 deletions
46
...ltin/process_creation/proc_creation_win_correlation_dnscat2_powershell_implementation.yml
This file was deleted.
Oops, something went wrong.
71 changes: 0 additions & 71 deletions
71
sigma/builtin/process_creation/proc_creation_win_correlation_multiple_susp_cli.yml
This file was deleted.
Oops, something went wrong.
55 changes: 0 additions & 55 deletions
55
sigma/builtin/process_creation/proc_creation_win_correlation_susp_builtin_commands_recon.yml
This file was deleted.
Oops, something went wrong.
36 changes: 0 additions & 36 deletions
36
sigma/builtin/security/win_security_global_catalog_enumeration.yml
This file was deleted.
Oops, something went wrong.
35 changes: 0 additions & 35 deletions
35
sigma/builtin/security/win_security_rare_schtasks_creations.yml
This file was deleted.
Oops, something went wrong.
35 changes: 0 additions & 35 deletions
35
sigma/builtin/security/win_security_susp_failed_logons_explicit_credentials.yml
This file was deleted.
Oops, something went wrong.
36 changes: 0 additions & 36 deletions
36
sigma/builtin/security/win_security_susp_failed_logons_single_source.yml
This file was deleted.
Oops, something went wrong.
Oops, something went wrong.