AS
Austin Songer
@austinsonger
First rule: Sun Mar 05 2017 01:00:00 GMT+0100 (Central European Standard Time)
Commits on SigmaHQPull Requests0rules authored
106sole author
9co-authored
Rule Types
By Severity
critical
0
high
10
medium
88
low
17
informational
0
By Status
stable
0
test
115
experimental
0
deprecated
0
unsupported
0
0
Total Rules
0
Stable Rules
0
High / Critical
0
Log Source Types
Recent RulesAll rules →
Malicious PowerShell Commandlets - ScriptBlock
Sun Mar 05 2017 01:00:00 GMT+0100 (Central European Standard Time)
highDetection
Usage Of Web Request Commands And Cmdlets
Thu Oct 24 2019 02:00:00 GMT+0200 (Central European Summer Time)
mediumDetection
AWS New Lambda Layer Attached
Thu Sep 23 2021 02:00:00 GMT+0200 (Central European Summer Time)
lowDetection
AADInternals PowerShell Cmdlets Execution - PsScript
Fri Dec 23 2022 01:00:00 GMT+0100 (Central European Standard Time)
highDetection
AADInternals PowerShell Cmdlets Execution - ProccessCreation
Fri Dec 23 2022 01:00:00 GMT+0100 (Central European Standard Time)
highDetection
Potential Windows Defender AV Bypass Via Dump64.EXE Rename
Fri Nov 26 2021 01:00:00 GMT+0100 (Central European Standard Time)
highDetection
Browse all 115 rules by Austin Songer
Filter the full rule library to see only their contributions