Files
blue-team-tools/rules/category
Florian Roth 49f757197a Merge PR #4917 from @Neo23x0 - Update antivirus related rules
update: Antivirus Exploitation Framework Detection - Add additional keywords and strings to enhance coverage
update: Antivirus Hacktool Detection - Add additional keywords and strings to enhance coverage
update: Antivirus Password Dumper Detection - Add additional keywords and strings to enhance coverage
update: Antivirus Ransomware Detection - Add additional keywords and strings to enhance coverage
update: Antivirus Relevant File Paths Alerts - Add additional keywords and strings to enhance coverage
update: Antivirus Web Shell Detection - Add additional keywords and strings to enhance coverage
update: Relevant Anti-Virus Signature Keywords In Application Log - Add additional keywords and strings to enhance coverage 

---------

Co-authored-by: nasbench <8741929+nasbench@users.noreply.github.com>
2024-07-17 16:35:51 +02:00
..