Files
blue-team-tools/rules
Nasreddine Bencherchali 04ad307e4e Update proc_creation_win_susp_advancedrun_priv_user.yml
Added cases for LocalService and NetworkService, which could be interesting to monitor:

RunAs=10 (Network Service)
RunAs=11 (Local Service)
2022-05-05 21:06:53 +01:00
..
2022-01-19 18:23:30 +01:00
2022-04-06 17:04:10 +02:00
2022-04-22 07:26:25 -05:00
2022-01-19 18:23:30 +01:00