Commit 9d58e38
authored
Merge PR SigmaHQ#5769 from @nasbench - fix keywords rule and remove the fields field
remove: Space After Filename - Logic was incorrect and untested
update: Potential CVE-2024-3400 Exploitation - Palo Alto GlobalProtect OS Command Injection - Update selection
update: JexBoss Command Sequence - Update the selection to use the |all modifier.
chore: remove any usage of the fields field to prepare for deprecation in the spec.1 parent bbbfb67 commit 9d58e38
202 files changed
Lines changed: 10 additions & 731 deletions
File tree
- deprecated/linux
- rules-emerging-threats
- 2014/TA/Axiom
- 2017
- Exploits/CVE-2017-11882
- Malware
- Fireball
- PlugX
- WannaCry
- 2018/Exploits
- CVE-2018-13379
- CVE-2018-2894
- 2019
- Exploits
- CVE-2019-11510
- CVE-2019-19781
- Malware
- Emotet
- Formbook
- QBot
- Ryuk
- 2020
- Exploits
- CVE-2020-0688
- CVE-2020-14882
- CVE-2020-28188
- CVE-2020-3452
- CVE-2020-5902
- CVE-2020-8193
- Malware/Maze
- TA/SolarWinds-Supply-Chain
- 2021
- Exploits
- CVE-2021-1675
- CVE-2021-2109
- CVE-2021-22123
- CVE-2021-26814
- CVE-2021-26858
- CVE-2021-40539
- CVE-2021-41379
- CVE-2021-42278
- CVE-2021-42287
- CVE-2021-43798
- VisualDoor-Exploit
- Malware/Conti
- TA/UNC2546
- 2023/Exploits/CVE-2023-23752
- 2024/Exploits/CVE-2024-3400
- rules-threat-hunting/windows/process_creation
- rules
- cloud/aws/cloudtrail
- linux
- auditd
- builtin
- macos/process_creation
- network
- cisco
- aaa
- bgp
- ldp
- huawei/bgp
- juniper/bgp
- zeek
- web
- proxy_generic
- webserver_generic
- windows
- builtin
- applocker
- msexchange
- ntlm
- security
- smbclient/security
- system/netlogon
- create_stream_hash
- dns_query
- file/file_event
- powershell/powershell_script
- process_creation
- registry
- registry_event
- registry_set
- wmi_event
Some content is hidden
Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.
Lines changed: 2 additions & 2 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
1 | 1 | | |
2 | 2 | | |
3 | | - | |
| 3 | + | |
4 | 4 | | |
5 | 5 | | |
6 | 6 | | |
7 | | - | |
| 7 | + | |
8 | 8 | | |
9 | 9 | | |
10 | 10 | | |
| |||
Lines changed: 0 additions & 3 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
26 | 26 | | |
27 | 27 | | |
28 | 28 | | |
29 | | - | |
30 | | - | |
31 | | - | |
32 | 29 | | |
33 | 30 | | |
34 | 31 | | |
Lines changed: 0 additions & 2 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
24 | 24 | | |
25 | 25 | | |
26 | 26 | | |
27 | | - | |
28 | | - | |
29 | 27 | | |
30 | 28 | | |
31 | 29 | | |
Lines changed: 0 additions & 3 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
22 | 22 | | |
23 | 23 | | |
24 | 24 | | |
25 | | - | |
26 | | - | |
27 | | - | |
28 | 25 | | |
29 | 26 | | |
30 | 27 | | |
Lines changed: 0 additions & 3 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
91 | 91 | | |
92 | 92 | | |
93 | 93 | | |
94 | | - | |
95 | | - | |
96 | | - | |
97 | 94 | | |
98 | 95 | | |
99 | 96 | | |
Lines changed: 0 additions & 3 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
39 | 39 | | |
40 | 40 | | |
41 | 41 | | |
42 | | - | |
43 | | - | |
44 | | - | |
45 | 42 | | |
46 | 43 | | |
47 | 44 | | |
Lines changed: 0 additions & 4 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
20 | 20 | | |
21 | 21 | | |
22 | 22 | | |
23 | | - | |
24 | | - | |
25 | | - | |
26 | | - | |
27 | 23 | | |
28 | 24 | | |
29 | 25 | | |
Lines changed: 0 additions & 3 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
21 | 21 | | |
22 | 22 | | |
23 | 23 | | |
24 | | - | |
25 | | - | |
26 | | - | |
27 | 24 | | |
28 | 25 | | |
29 | 26 | | |
Lines changed: 0 additions & 5 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
18 | 18 | | |
19 | 19 | | |
20 | 20 | | |
21 | | - | |
22 | | - | |
23 | | - | |
24 | | - | |
25 | | - | |
26 | 21 | | |
27 | 22 | | |
28 | 23 | | |
Lines changed: 0 additions & 5 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
28 | 28 | | |
29 | 29 | | |
30 | 30 | | |
31 | | - | |
32 | | - | |
33 | | - | |
34 | | - | |
35 | | - | |
36 | 31 | | |
37 | 32 | | |
38 | 33 | | |
0 commit comments