Closed jeremyhagan closed 1 month ago
Removed smart quotes from title of rule which were causing the payload to bomb out when sending to Microsoft Sentinel as a detection rule template
fix: Malicious DLL File Dropped in the Teams or OneDrive Folder - Remove smart quotes
Summary of the Pull Request
Removed smart quotes from title of rule which were causing the payload to bomb out when sending to Microsoft Sentinel as a detection rule template
Changelog
fix: Malicious DLL File Dropped in the Teams or OneDrive Folder - Remove smart quotes
Example Log Event
Fixed Issues
SigmaHQ Rule Creation Conventions