-
Notifications
You must be signed in to change notification settings - Fork 374
Pull requests: splunk/security_content
Author
Label
Projects
Milestones
Reviews
Assignee
Sort
Pull requests list
Nterl0k - T1200 - Are you down with USB ?
Detections
#3283
opened Jan 17, 2025 by
nterl0k
Loading…
6 tasks
Nterl0k - T1114.003 O365 Transport Rule Changed
Detections
#3280
opened Jan 15, 2025 by
nterl0k
Loading…
6 tasks
Nterl0k - RMM Story + Detection Updates
Detections
Stories
#3279
opened Jan 15, 2025 by
nterl0k
Loading…
6 tasks
GitHub detections improvement
Datasource
Detections
Macros
Stories
WIP
DO NOT MERGE Work in Progress
#3278
opened Jan 15, 2025 by
P4T12ICK
Loading…
Nterl0k - T1059 - Generic Malicious Powershell Strings + Lookup
Detections
Lookups
#3276
opened Jan 13, 2025 by
nterl0k
Loading…
6 tasks
RDP bruteforce - production!
Datasource
Detections
#3275
opened Jan 10, 2025 by
patel-bhavin
Loading…
Nterl0k - T1213.002 Sus SharePoint Search
Detections
#3272
opened Jan 8, 2025 by
nterl0k
Loading…
6 tasks
Nterl0k - T1110 MFA Sweep / Excessive OS indicators from a user.
Detections
#3268
opened Jan 6, 2025 by
nterl0k
Loading…
6 tasks
Nterl0k - T1033 Query.exe usage on remote devices.
Detections
#3267
opened Jan 6, 2025 by
nterl0k
Loading…
6 tasks
Add detection suspicious api / url from telegram
Detections
#3263
opened Jan 2, 2025 by
zake1god
Loading…
1 of 6 tasks
Data Source mapping improvements
Datasource
Detections
WIP
DO NOT MERGE Work in Progress
#3194
opened Nov 6, 2024 by
P4T12ICK
Loading…
auditd_sourcetype_update
Datasource
Macros
WIP
DO NOT MERGE Work in Progress
#3136
opened Sep 24, 2024 by
tccontre
Loading…
6 tasks
ProTip!
Exclude everything labeled
bug
with -label:bug.