Skip to content

Commit

Permalink
Merge PR #4916 from @frack113 - Move some rules to Emerging-Threats f…
Browse files Browse the repository at this point in the history
…older

chore: OceanLotus Registry Activity - move to emerging-threats
chore: OilRig APT Registry Persistence - move to emerging-threats
chore: Potential Ursnif Malware Activity - Registry - move to emerging-threats
chore: Leviathan Registry Key Activity - move to emerging-threats
  • Loading branch information
frack113 authored Jul 17, 2024
1 parent 568f1ae commit 3c7fcf6
Show file tree
Hide file tree
Showing 4 changed files with 4 additions and 0 deletions.
Original file line number Diff line number Diff line change
Expand Up @@ -11,6 +11,7 @@ modified: 2023/09/28
tags:
- attack.defense_evasion
- attack.t1112
- detection.emerging_threats
logsource:
category: registry_event
product: windows
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -24,6 +24,7 @@ tags:
- attack.t1112
- attack.command_and_control
- attack.t1071.004
- detection.emerging_threats
logsource:
category: registry_event
product: windows
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -11,6 +11,7 @@ modified: 2023/02/07
tags:
- attack.execution
- attack.t1112
- detection.emerging_threats
logsource:
product: windows
category: registry_add
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -10,6 +10,7 @@ modified: 2023/09/19
tags:
- attack.persistence
- attack.t1547.001
- detection.emerging_threats
logsource:
category: registry_event
product: windows
Expand Down

0 comments on commit 3c7fcf6

Please sign in to comment.