SigmaHQ / sigma

Main Sigma Rule Repository
Other
8.19k stars 2.17k forks source link

FP Fixes #4802

Closed phantinuss closed 5 months ago

phantinuss commented 5 months ago

Summary of the Pull Request

Changelog

fix: Windows Binaries Write Suspicious Extensions - fix selection fix: Rundll32 Execution With Uncommon DLL Extension - add optional filter for MS Edge update

Example Log Event

Fixed Issues

SigmaHQ Rule Creation Conventions