From b771fb0c55139ba507617fb8a2a7fa5c307cad4e Mon Sep 17 00:00:00 2001 From: bartlomiej-czyz <77778773+bartlomiej-czyz@users.noreply.github.com> Date: Mon, 8 Feb 2021 12:45:59 +0100 Subject: [PATCH] Change win_metasploit_or_impacket_smb_psexec_service_install.yml severity level --- .../win_metasploit_or_impacket_smb_psexec_service_install.yml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/rules/windows/builtin/win_metasploit_or_impacket_smb_psexec_service_install.yml b/rules/windows/builtin/win_metasploit_or_impacket_smb_psexec_service_install.yml index 7bdc7ccce..833a13490 100644 --- a/rules/windows/builtin/win_metasploit_or_impacket_smb_psexec_service_install.yml +++ b/rules/windows/builtin/win_metasploit_or_impacket_smb_psexec_service_install.yml @@ -27,7 +27,7 @@ fields: - ServiceFileName falsepositives: - Highly unlikely -level: critical +level: high --- logsource: product: windows