NS
Natalia Shornikova
First rule: Thu Nov 14 2019 00:00:00 GMT+0000 (Coordinated Universal Time)
0rules authored
0sole author
11co-authored
Rule Types
By Severity
critical
0
high
6
medium
4
low
1
informational
0
By Status
stable
0
test
11
experimental
0
deprecated
0
unsupported
0
0
Total Rules
0
Stable Rules
0
High / Critical
0
Log Source Types
Recent RulesAll rules →
PowerShell Core DLL Loaded By Non PowerShell Process
Thu Nov 14 2019 00:00:00 GMT+0000 (Coordinated Universal Time)
mediumDetection
Potential Credential Dumping Attempt Via PowerShell
Tue Oct 06 2020 00:00:00 GMT+0000 (Coordinated Universal Time)
mediumThreat Hunt
Potential Process Execution Proxy Via CL_Invocation.ps1
Wed Oct 14 2020 00:00:00 GMT+0000 (Coordinated Universal Time)
mediumDetection
Potential Script Proxy Execution Via CL_Mutexverifiers.ps1
Sat May 21 2022 00:00:00 GMT+0000 (Coordinated Universal Time)
mediumDetection
PowerShell as a Service in Registry
Tue Oct 06 2020 00:00:00 GMT+0000 (Coordinated Universal Time)
highDetection
Execution DLL of Choice Using WAB.EXE
Tue Oct 13 2020 00:00:00 GMT+0000 (Coordinated Universal Time)
highDetection
Browse all 11 rules by Natalia Shornikova
Filter the full rule library to see only their contributions