frack113
01dc930c17
Change status for old rules
2021-11-27 11:33:14 +01:00
Daniel Masse
71ea5c7437
Add missing product in logsource
2020-12-23 15:45:00 -05:00
mat
b3e36281b5
fix reference field + add test for references in plural form
2020-11-27 10:17:45 +01:00
Florian Roth
720ac0d998
fix: syntax bug in rule
2020-09-03 09:18:28 +02:00
Florian Roth
423f81c912
Update win_mouse_lock.yml
2020-09-02 14:49:37 +02:00
Florian Roth
8a02541b0a
style: removed lists where unnecessary
2020-08-17 15:02:16 +02:00
Cian Heasley
b378b3d62b
win_mouse_lock.yml
...
In Kaspersky's 2020 Incident Response Analyst Report they listed legitimate tool "Mouse Lock" as being used for both credential access and collection in security incidents.
2020-08-13 12:09:07 +01:00