frack113
|
4f83231697
|
Update old sigma link (#303)
* Update SigmaHQ ref
Signed-off-by: frack113 <62423083+frack113@users.noreply.github.com>
* Update SigmaHQ ref
Signed-off-by: frack113 <62423083+frack113@users.noreply.github.com>
* Update SigmaHq ref
Signed-off-by: frack113 <62423083+frack113@users.noreply.github.com>
* Update SigmaHq ref
Signed-off-by: frack113 <62423083+frack113@users.noreply.github.com>
---------
Signed-off-by: frack113 <62423083+frack113@users.noreply.github.com>
|
2023-10-18 11:30:34 -04:00 |
|
frack113
|
e8ea28d4e9
|
Update SigmaHQ ref (#301)
Signed-off-by: frack113 <62423083+frack113@users.noreply.github.com>
|
2023-06-19 22:40:24 +01:00 |
|
Wietze
|
67e1040172
|
Merge remote-tracking branch 'upstream/master' into windows_11_sprint
|
2022-10-03 16:18:57 +01:00 |
|
xenoscr
|
dd58662ee9
|
Correcting 'UAC bypass' to 'UAC Bypass'
|
2022-09-10 22:58:06 -04:00 |
|
xenoscr
|
ce36f924fc
|
Removing extra --- from each yaml file
|
2022-09-10 22:16:47 -04:00 |
|
Wietze
|
754a451e76
|
Updating entries that have been confirmed to be working on Windows 11 (21H2)
|
2021-12-14 15:51:43 +00:00 |
|
bohops
|
23dd0236ae
|
Detection Resources and Other Updates (#179)
* Add detection links for scripts
* Add detection links for OtherMSBins. Fixed and updated as needed.
* Add detection links for MSBins. Fixed and updated as needed.
* Add detection links for oslibraries
* Updating template for Detections
* Removing empty Detection:Sigma entries
* Remove redundant blank line
* Replacing commit URL with file URL
Co-authored-by: root <root@DESKTOP-5CR935D.localdomain>
Co-authored-by: Wietze <wietze@users.noreply.github.com>
|
2021-11-15 08:19:03 -05:00 |
|
Wietze
|
4f7ec8d2af
|
MITRE ATT&CK realignment sprint
|
2021-11-05 18:58:26 +00:00 |
|
Oddvar Moe
|
a55e2249c1
|
Merge branch 'master' into fixing-yaml-issues
|
2021-10-22 14:53:09 +02:00 |
|
wokis
|
00935f154e
|
Update Wsreset.yml
Added detection by Microsoft Defender Antivirus as Behavior:Win32/UACBypassExp.T!gen
|
2021-01-20 14:47:23 +01:00 |
|
Wietze
|
5012f95152
|
Fix Code_Sample field
|
2021-01-10 15:49:30 +00:00 |
|
Wietze
|
14dca38278
|
Standardise date formats (see https://yaml.org/type/timestamp.html)
|
2021-01-10 15:04:52 +00:00 |
|
Oddvar Moe
|
17e541f8c0
|
Added wsreset.exe - uac bypass
|
2019-03-18 08:44:53 +01:00 |
|