Closed skaynum closed 1 month ago
Add rules to detect:
new: Uncommon File Creation By Mysql Daemon Process new: Potential Suspicious Browser Launch From Document Reader Process
Relevant Links: https://app.any.run/tasks/69c5abaa-92ad-45ba-8c53-c11e23e05d04 https://app.any.run/tasks/64043a79-165f-4052-bcba-e6e49f847ec1/
N/A
Summary of the Pull Request
Add rules to detect:
Changelog
new: Uncommon File Creation By Mysql Daemon Process new: Potential Suspicious Browser Launch From Document Reader Process
Example Log Event
Relevant Links: https://app.any.run/tasks/69c5abaa-92ad-45ba-8c53-c11e23e05d04 https://app.any.run/tasks/64043a79-165f-4052-bcba-e6e49f847ec1/
Fixed Issues
N/A
SigmaHQ Rule Creation Conventions