Files
blue-team-tools/rules/windows
Brad Kish 7e06fd80fd Proposed fix for sysmon_uac_bypass_eventvwr
Issue: https://github.com/Neo23x0/sigma/issues/888

The rules were not merged correctly with the transition to sysmon categories.

Split the rule into separate documents: one for the registry_event and one for
the process_creation
2020-07-06 09:20:34 -04:00
..
2020-05-23 18:32:02 +02:00
2020-06-24 18:10:58 +02:00
2020-06-17 11:31:40 -06:00
2020-06-28 11:05:19 +02:00
2020-07-03 11:22:06 +02:00
2020-07-03 11:22:06 +02:00