J
juju4
First rule: Sun Oct 29 2017 02:00:00 GMT+0200 (Central European Summer Time)
0rules authored
5sole author
4co-authored
Rule Types
By Severity
critical
0
high
0
medium
8
low
1
informational
0
By Status
stable
0
test
9
experimental
0
deprecated
0
unsupported
0
0
Total Rules
0
Stable Rules
0
High / Critical
0
Log Source Types
Recent RulesAll rules →
Potential Product Class Reconnaissance Via Wmic.EXE
Tue Feb 14 2023 01:00:00 GMT+0100 (Central European Standard Time)
mediumDetection
Potential RDP Session Hijacking Activity
Tue Dec 27 2022 01:00:00 GMT+0100 (Central European Standard Time)
mediumDetection
Potentially Suspicious Rundll32 Activity
Wed Jan 16 2019 01:00:00 GMT+0100 (Central European Standard Time)
mediumDetection
Potential Commandline Obfuscation Using Escape Characters
Tue Dec 11 2018 01:00:00 GMT+0100 (Central European Standard Time)
mediumDetection
New Process Created Via Wmic.EXE
Wed Jan 16 2019 01:00:00 GMT+0100 (Central European Standard Time)
mediumDetection
Suspicious SQL Query
Tue Dec 27 2022 01:00:00 GMT+0100 (Central European Standard Time)
mediumDetection
Browse all 9 rules by juju4
Filter the full rule library to see only their contributions