Merge pull request #2562 from SimoneCagol/patch-1

Update sysmon_raw_disk_access_using_illegitimate_tools.yml
This commit is contained in:
frack113
2022-01-14 16:51:54 +01:00
committed by GitHub
@@ -4,7 +4,7 @@ description: Raw disk access using illegitimate tools, possible defence evasion
author: Teymur Kheirkhabarov, oscd.community
status: test
date: 2019/10/22
modified: 2022/02/02
modified: 2022/01/02
references:
- https://www.slideshare.net/heirhabarov/hunting-for-credentials-dumping-in-windows-environment
tags: