Files
blue-team-tools/rules/windows
Tobias Michalski 992e70032e fix: Comma in title seems to break splunk search
Most likely it comes from a bad parsing by Sigma2Splunkalert but since it is unmaintained and this is the only rule with a comma in title, this is the easy fix. 

Error in 'inputlookup' command: Invalid argument:
'_Privileged_Console_Access_whitelist.csv'

[| inputlookup "Using_Sticky-keys_To_Obtain_Unauthenticated,_Privileged_Console_Access_whitelist.csv]
2022-04-19 17:22:01 +02:00
..
2022-04-04 10:57:23 +02:00
2022-03-16 13:43:54 +01:00
2022-04-13 19:25:11 +02:00
2022-04-11 11:35:19 +02:00
2022-04-09 18:00:15 +02:00
2022-04-13 19:27:11 +02:00
2022-03-15 18:05:42 +01:00
2022-01-19 18:23:30 +01:00