@
@gott_cyber
First rule: Sun Jul 31 2022 02:00:00 GMT+0200 (Central European Summer Time)
0rules authored
7sole author
1co-authored
Rule Types
By Severity
critical
0
high
3
medium
5
low
0
informational
0
By Status
stable
0
test
8
experimental
0
deprecated
0
unsupported
0
0
Total Rules
0
Stable Rules
0
High / Critical
0
Log Source Types
Recent RulesAll rules →
Uncommon Child Process Of Setres.EXE
Sun Dec 11 2022 01:00:00 GMT+0100 (Central European Standard Time)
highDetection
Windows Filtering Platform Blocked Connection From EDR Agent Binary
Mon Jan 08 2024 01:00:00 GMT+0100 (Central European Standard Time)
highDetection
HackTool - EDRSilencer Execution
Tue Jan 02 2024 01:00:00 GMT+0100 (Central European Standard Time)
highDetection
Potential CVE-2021-27905 Exploitation Attempt
Sun Dec 11 2022 01:00:00 GMT+0100 (Central European Standard Time)
mediumEmerging Threat
Import LDAP Data Interchange Format File Via Ldifde.EXE
Fri Sep 02 2022 02:00:00 GMT+0200 (Central European Summer Time)
mediumDetection
Potential DLL Sideloading Via DeviceEnroller.EXE
Mon Aug 29 2022 02:00:00 GMT+0200 (Central European Summer Time)
mediumDetection
Browse all 8 rules by @gott_cyber
Filter the full rule library to see only their contributions