Feature/addruletype to sigma rule#230 (#235)
* added ruletype to SIGMA rule #230 * added ruletype to SIGMA rule converter tool #231
This commit is contained in:
@@ -32,3 +32,4 @@ tags:
|
||||
- attack.command_and_control
|
||||
- attack.t1071
|
||||
- attack.t1071.004
|
||||
ruletype: SIGMA
|
||||
|
||||
@@ -49,3 +49,4 @@ status: experimental
|
||||
tags:
|
||||
- attack.reconnaissance
|
||||
- attack.t1590
|
||||
ruletype: SIGMA
|
||||
|
||||
@@ -26,3 +26,4 @@ status: experimental
|
||||
tags:
|
||||
- attack.persistence
|
||||
- attack.t1554
|
||||
ruletype: SIGMA
|
||||
|
||||
@@ -22,3 +22,4 @@ status: experimental
|
||||
tags:
|
||||
- attack.exfiltration
|
||||
- attack.t1567.002
|
||||
ruletype: SIGMA
|
||||
|
||||
@@ -73,3 +73,4 @@ status: experimental
|
||||
tags:
|
||||
- attack.initial_access
|
||||
- attack.t1189
|
||||
ruletype: SIGMA
|
||||
|
||||
@@ -38,3 +38,4 @@ tags:
|
||||
- attack.defense_evasion
|
||||
- attack.t1218.010
|
||||
- attack.t1117
|
||||
ruletype: SIGMA
|
||||
|
||||
Reference in New Issue
Block a user