Skip to content

T1211 #146

@frack113

Description

@frack113

https://attack.mitre.org/techniques/T1211/

sigma:
builtin/application/application_error/win_application_error_msmpeng_crash.yml: - attack.t1211
builtin/application/microsoft-windows_audit_cve/win_audit_cve.yml: - attack.t1211
builtin/application/windows_error_reporting/win_application_msmpeng_crash_wer.yml: - attack.t1211
process_creation/proc_creation_win_susp_hiding_malware_in_fonts_folder.yml: - attack.t1211

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions