Fixed single quote balance
This commit is contained in:
committed by
Florian Roth
parent
6125875d2d
commit
c2f3ee25a8
@@ -1,5 +1,5 @@
|
||||
description: Eventlog Cleared
|
||||
comment: Some threat groups tend to delete the local 'Security'' Eventlog using certain utitlities
|
||||
comment: Some threat groups tend to delete the local 'Security' Eventlog using certain utitlities
|
||||
detection:
|
||||
selection:
|
||||
- EventLog: Security
|
||||
@@ -10,4 +10,4 @@ detection:
|
||||
falsepositives:
|
||||
- Rollout of log collection agents (the setup routine often includes a reset of the local Eventlog)
|
||||
- System provisioning (system reset before the golden image creation)
|
||||
level: 70
|
||||
level: 70
|
||||
|
||||
Reference in New Issue
Block a user