Feature/addruletype to sigma rule#230 (#235)

* added ruletype to SIGMA rule #230

* added ruletype to SIGMA rule converter tool #231
This commit is contained in:
DustInDark
2021-11-28 18:14:51 +09:00
committed by GitHub
parent bc230f7cd5
commit 0cfa806baf
1087 changed files with 1186 additions and 90 deletions

View File

@@ -28,3 +28,4 @@ tags:
- attack.execution
- attack.t1059.001
- attack.t1086
ruletype: SIGMA

View File

@@ -38,3 +38,4 @@ tags:
- attack.execution
- attack.t1059.001
- attack.t1086
ruletype: SIGMA

View File

@@ -37,3 +37,4 @@ tags:
- attack.defense_evasion
- attack.t1070.003
- attack.t1146
ruletype: SIGMA

View File

@@ -27,3 +27,4 @@ status: experimental
tags:
- attack.defense_evasion
- attack.t1140
ruletype: SIGMA

View File

@@ -27,3 +27,4 @@ status: experimental
tags:
- attack.collection
- attack.t1115
ruletype: SIGMA

View File

@@ -27,3 +27,4 @@ tags:
- attack.t1027
- attack.execution
- attack.t1059.001
ruletype: SIGMA

View File

@@ -40,3 +40,4 @@ tags:
- attack.execution
- attack.t1059.001
- attack.t1086
ruletype: SIGMA

View File

@@ -27,3 +27,4 @@ tags:
- attack.t1027
- attack.execution
- attack.t1059.001
ruletype: SIGMA

View File

@@ -27,3 +27,4 @@ tags:
- attack.t1027
- attack.execution
- attack.t1059.001
ruletype: SIGMA

View File

@@ -27,3 +27,4 @@ tags:
- attack.t1027
- attack.execution
- attack.t1059.001
ruletype: SIGMA

View File

@@ -27,3 +27,4 @@ tags:
- attack.t1027
- attack.execution
- attack.t1059.001
ruletype: SIGMA

View File

@@ -27,3 +27,4 @@ tags:
- attack.t1027
- attack.execution
- attack.t1059.001
ruletype: SIGMA

View File

@@ -27,3 +27,4 @@ tags:
- attack.t1027
- attack.execution
- attack.t1059.001
ruletype: SIGMA

View File

@@ -27,3 +27,4 @@ tags:
- attack.t1027
- attack.execution
- attack.t1059.001
ruletype: SIGMA

View File

@@ -27,3 +27,4 @@ tags:
- attack.t1027
- attack.execution
- attack.t1059.001
ruletype: SIGMA

View File

@@ -27,3 +27,4 @@ tags:
- attack.t1027
- attack.execution
- attack.t1059.001
ruletype: SIGMA

View File

@@ -27,3 +27,4 @@ status: experimental
tags:
- attack.command_and_control
- attack.t1095
ruletype: SIGMA

View File

@@ -28,3 +28,4 @@ tags:
- attack.lateral_movement
- attack.t1021.006
- attack.t1028
ruletype: SIGMA

View File

@@ -35,3 +35,4 @@ status: experimental
tags:
- attack.defense_evasion
- attack.t1218
ruletype: SIGMA

View File

@@ -32,3 +32,4 @@ status: experimental
tags:
- attack.collection
- attack.t1074.001
ruletype: SIGMA

View File

@@ -27,3 +27,4 @@ tags:
- attack.execution
- attack.t1059.001
- attack.t1086
ruletype: SIGMA

View File

@@ -35,3 +35,4 @@ tags:
- attack.execution
- attack.t1059.001
- attack.t1086
ruletype: SIGMA

View File

@@ -92,3 +92,4 @@ tags:
- attack.execution
- attack.t1059.001
- attack.t1086
ruletype: SIGMA

View File

@@ -27,3 +27,4 @@ status: experimental
tags:
- attack.defense_evasion
- attack.t1218
ruletype: SIGMA