OTRF / ThreatHunter-Playbook

A community-driven, open-source project to share detection logic, adversary tradecraft and resources to make detection development more efficient.
MIT License
3.94k stars 802 forks source link

In-Memory Mimikatz OverPass-The-Hash #31

Closed booberry46 closed 4 years ago

booberry46 commented 5 years ago

Link for T1075_mimikatz_inmem_pth.xml is not working.

Cyb3rWard0g commented 4 years ago

Thank you @booberry46 . Sorry for the late response. With the latest update, I removed Sysmon modular configs.