secDre4mer
5550ccd280
Merge PR #4985 from @secDre4mer - Update Potential Active Directory Reconnaissance/Enumeration Via LDAP
...
update: Potential Active Directory Reconnaissance/Enumeration Via LDAP - add enumeration of distinguished names
2024-08-27 13:36:15 +02:00
Nasreddine Bencherchali
598d29f811
Merge PR #4950 from @nasbench - Comply With v2 Spec Changes
...
chore: change tags, date, modified fields to comply with v2 of the Sigma spec.
chore: update the related type from `obsoletes` to `obsolete`.
chore: update local json schema to the latest version.
2024-08-12 12:02:50 +02:00
frack113
271f972468
Merge PR #4538 from @frack113 - Add Sigma CLI Configuration File
...
chore: add sigma-cli configuration file
fix: Suspicious Non-Browser Network Communication With Google API - Fix escaped wildcard issue and Update modifiers
fix: Uncommon PowerShell Hosts - Fix escaped wildcard issue
fix: Potential Active Directory Reconnaissance/Enumeration Via LDAP - Update logsource
---------
Co-authored-by: nasbench <8741929+nasbench@users.noreply.github.com >
2023-11-03 16:59:53 +01:00
Nasreddine Bencherchali
e6c155442f
feat: multiple updates and enhancements
2023-01-30 20:02:45 +01:00
Nasreddine Bencherchali
a1038670aa
feat: add new reference
2022-12-28 16:17:46 +01:00
Korving-F
bf79fa78bc
Updates modified timestamp
2022-12-28 14:52:27 +02:00
Frank Korving
0f55e70a4f
Update win_ldap_recon.yml
...
Adds additional IOC for [bloodhound.py](https://github.com/fox-it/BloodHound.py/blob/master/bloodhound/ad/domain.py#L427 ).
2022-12-28 13:45:37 +02:00
Nasreddine Bencherchali
ec63adb32f
fix: update title
2022-12-14 23:12:23 +01:00
Nasreddine Bencherchali
79e83766eb
feat: update ldap rule with additional strings
2022-12-14 16:52:04 +01:00
frack113
931fb30853
old experimental rule promotion
2022-10-09 16:54:04 +02:00
Nasreddine Bencherchali
9f61d51408
Rename
2022-08-22 14:52:59 +01:00
Nasreddine Bencherchali
238e0ecd7d
Update Ref+Selection
2022-07-11 14:11:53 +01:00
frack113
7053d42e43
move to builtin
2022-01-21 11:59:13 +01:00