Merge branch 'redcannary_20230113' of github.com:frack113/sigma into redcannary_20230113

This commit is contained in:
frack113
2023-01-13 13:03:52 +01:00
@@ -24,7 +24,7 @@ detection:
CommandLine|contains|all:
- '\system\currentcontrolset\control\lsa'
- 'DisableRestrictedAdmin'
- ' 0'
- ' 1'
condition: selection
falsepositives:
- Unknown