Skip to content

Actions: SigmaHQ/sigma

PR Labeler Workflow

Actions

Loading...
Loading

Show workflow options

Create status badge

Loading
505 workflow runs
505 workflow runs

Filter by Event

Filter by Status

Filter by Branch

Filter by Actor

fix: FPs with NetNTLM downgrade attack
PR Labeler Workflow #505: Pull request #5108 opened by Neo23x0
December 3, 2024 14:39 14s
December 3, 2024 14:39 14s
Add renamed binaries from DFIR report
PR Labeler Workflow #504: Pull request #5107 opened by mgreen27
December 3, 2024 02:58 16s
December 3, 2024 02:58 16s
add SID version of integrity levels
PR Labeler Workflow #503: Pull request #5106 opened by nasbench
December 1, 2024 16:50 12s
December 1, 2024 16:50 12s
add new rule for password_group_discovery
PR Labeler Workflow #502: Pull request #5103 opened by CheraghiMilad
December 1, 2024 12:02 14s
December 1, 2024 12:02 14s
Add new path for pam.d
PR Labeler Workflow #501: Pull request #5102 opened by CheraghiMilad
December 1, 2024 10:56 11s
December 1, 2024 10:56 11s
Proc creation lnx local account
PR Labeler Workflow #500: Pull request #5099 opened by CheraghiMilad
November 30, 2024 19:35 12s
November 30, 2024 19:35 12s
Add a new technique with a service
PR Labeler Workflow #499: Pull request #5098 opened by CheraghiMilad
November 30, 2024 19:17 14s
November 30, 2024 19:17 14s
Add new binaries
PR Labeler Workflow #498: Pull request #5097 opened by CheraghiMilad
November 30, 2024 19:06 12s
November 30, 2024 19:06 12s
Proc creation lnx exfiltration data via sftp protocol (winscp tool)
PR Labeler Workflow #497: Pull request #5096 opened by CheraghiMilad
November 29, 2024 14:57 12s
November 29, 2024 14:57 12s
Quick Assist Detection in the environment
PR Labeler Workflow #496: Pull request #5095 opened by faisalusuf
November 29, 2024 10:18 14s
November 29, 2024 10:18 14s
fix: FPs with WerFault
PR Labeler Workflow #495: Pull request #5093 opened by Neo23x0
November 28, 2024 11:30 18s
November 28, 2024 11:30 18s
Adding two new techniques to the rule - findmnt - mlocate
PR Labeler Workflow #494: Pull request #5091 opened by CheraghiMilad
November 24, 2024 19:17 12s
November 24, 2024 19:17 12s
add rule for impair system power settings
PR Labeler Workflow #493: Pull request #5090 opened by CheraghiMilad
November 24, 2024 14:42 16s
November 24, 2024 14:42 16s
Add rule of impair system power settings
PR Labeler Workflow #492: Pull request #5089 opened by CheraghiMilad
November 24, 2024 13:49 1m 5s
November 24, 2024 13:49 1m 5s
Clean old sigmac hash trick
PR Labeler Workflow #491: Pull request #5088 opened by frack113
November 24, 2024 07:24 14s
November 24, 2024 07:24 14s
Expand ESXi Detections with ESXCli & VIM-CMD Detections
PR Labeler Workflow #490: Pull request #5087 opened by AlbinoGazelle
November 23, 2024 04:40 1m 5s
November 23, 2024 04:40 1m 5s
update ESXCLI reference docs after broadcom acquisition of VMWare
PR Labeler Workflow #489: Pull request #5086 opened by AlbinoGazelle
November 20, 2024 16:00 14s
November 20, 2024 16:00 14s
Update proc_creation_win_findstr_security_keyword_lookup.yml
PR Labeler Workflow #488: Pull request #5085 opened by MalGamy12
November 20, 2024 13:33 14s
November 20, 2024 13:33 14s
Update registry_set_persistence_com_hijacking_builtin.yml
PR Labeler Workflow #487: Pull request #5084 opened by MalGamy12
November 19, 2024 09:05 13s
November 19, 2024 09:05 13s
Added ordinal of ShellExec_RunDLL
PR Labeler Workflow #486: Pull request #5082 opened by swachchhanda000
November 16, 2024 15:03 14s
November 16, 2024 15:03 14s
Detect RTLO extension spoofing, MITRE T1036.002 in File-Events
PR Labeler Workflow #485: Pull request #5081 opened by cod3nym
November 15, 2024 15:07 14s
November 15, 2024 15:07 14s
November 13, 2024 15:31 13s
This rule detects the deletion of existing Auditd rules
PR Labeler Workflow #483: Pull request #5078 opened by mlakri
November 13, 2024 14:05 14s
November 13, 2024 14:05 14s
Create net_connection_win_susp_azurefd_connection.yml
PR Labeler Workflow #482: Pull request #5077 opened by IsaacDunham
November 11, 2024 16:17 13s
November 11, 2024 16:17 13s
fix: FPs with Google Updater Uninstall Script
PR Labeler Workflow #481: Pull request #5076 opened by Neo23x0
November 11, 2024 15:01 15s
November 11, 2024 15:01 15s