Feature/addruletype to sigma rule#230 (#235)

* added ruletype to SIGMA rule #230

* added ruletype to SIGMA rule converter tool #231
This commit is contained in:
DustInDark
2021-11-28 18:14:51 +09:00
committed by GitHub
parent bc230f7cd5
commit 0cfa806baf
1087 changed files with 1186 additions and 90 deletions

View File

@@ -28,3 +28,4 @@ status: experimental
tags:
- attack.execution
- attack.t1127.001
ruletype: SIGMA

View File

@@ -50,3 +50,4 @@ tags:
- attack.execution
- attack.t1559.001
- attack.t1175
ruletype: SIGMA

View File

@@ -58,3 +58,4 @@ status: experimental
tags:
- attack.execution
- attack.t1203
ruletype: SIGMA

View File

@@ -108,3 +108,4 @@ tags:
- attack.command_and_control
- attack.t1571
- attack.t1043
ruletype: SIGMA

View File

@@ -28,3 +28,4 @@ tags:
- attack.execution
- attack.defense_evasion
- attack.t1055
ruletype: SIGMA

View File

@@ -60,3 +60,4 @@ tags:
- attack.execution
- attack.t1059.001
- attack.t1086
ruletype: SIGMA

View File

@@ -39,3 +39,4 @@ tags:
- attack.t1021.001
- attack.t1076
- car.2013-07-002
ruletype: SIGMA

View File

@@ -35,3 +35,4 @@ tags:
- attack.defense_evasion
- attack.t1218.010
- attack.t1117
ruletype: SIGMA

View File

@@ -32,3 +32,4 @@ tags:
- attack.lateral_movement
- attack.t1021.006
- attack.t1028
ruletype: SIGMA

View File

@@ -49,3 +49,4 @@ tags:
- attack.t1218.011
- attack.t1085
- attack.execution
ruletype: SIGMA

View File

@@ -40,3 +40,4 @@ status: experimental
tags:
- attack.command_and_control
- attack.t1105
ruletype: SIGMA

View File

@@ -51,3 +51,4 @@ tags:
- attack.t1021.001
- attack.t1076
- car.2013-07-002
ruletype: SIGMA

View File

@@ -36,3 +36,4 @@ tags:
- attack.lateral_movement
- attack.t1550.003
- attack.t1097
ruletype: SIGMA

View File

@@ -35,3 +35,4 @@ tags:
- attack.exfiltration
- attack.t1567.001
- attack.t1048
ruletype: SIGMA

View File

@@ -30,3 +30,4 @@ status: experimental
tags:
- attack.lateral_movement
- attack.t1105
ruletype: SIGMA

View File

@@ -25,3 +25,4 @@ status: experimental
tags:
- attack.defense_evasion
- attack.t1218
ruletype: SIGMA

View File

@@ -44,3 +44,4 @@ status: stable
tags:
- attack.impact
- attack.t1496
ruletype: SIGMA