chore: increase status to stable
This commit is contained in:
@@ -1,7 +1,7 @@
|
||||
title: Suspicious Use of Procdump on LSASS
|
||||
id: 5afee48e-67dd-4e03-a783-f74259dcf998
|
||||
description: Detects suspicious uses of the SysInternals Procdump utility by using a special command line parameter in combination with the lsass.exe process. This way we're also able to catch cases in which the attacker has renamed the procdump executable.
|
||||
status: experimental
|
||||
status: stable
|
||||
references:
|
||||
- Internal Research
|
||||
author: Florian Roth
|
||||
|
||||
Reference in New Issue
Block a user