* [Tuning] Linux DR Tuning - Part 2 * Update defense_evasion_binary_copied_to_suspicious_directory.toml * Update defense_evasion_base16_or_base32_encoding_or_decoding_activity.toml (cherry picked from commit 0e48747aa6)
0e48747aa6
(cherry picked from commit d52546eee5)
d52546eee5
* [New Rule] Attempt to Clear Kernel Ring Buffer * Update defense_evasion_clear_kernel_ring_buffer.toml --------- Co-authored-by: Colson Wilhoit <48036388+DefSecSentinel@users.noreply.github.com> (cherry picked from commit 618a1dbe06)
618a1dbe06