Phoenix
Sigma Intelligence
Beta
Home
Detections
Rules
Authors
MITRE
KB
Convert
Analytics
Coverage
Field Explorer
Testing
Ecosystem
Releases
About
Team
Philosophy
Search Rules
Rule Library
Sigma Rules
1 rule found for "Moriarty Meng"
3,707
Total
3,116
Detection
451
Emerging
137
Hunting
Filters
Detection
high
test
Run PowerShell Script from Redirected Input Stream
Detects PowerShell script execution via input stream redirect
Windows
Process Creation
TA0005 · Defense Evasion
TA0002 · Execution
T1059 · Command and Scripting Interpreter
Moriarty Meng
+2
Sat Oct 17
windows