Closed MalGamy12 closed 1 month ago
update target objects with a new value.
update: Disable Windows Defender Functionalities Via Registry Keys - Remove \Real-Time Protection\ prefix to increase coverage.
\Real-Time Protection\
N/A
Summary of the Pull Request
update target objects with a new value.
Changelog
update: Disable Windows Defender Functionalities Via Registry Keys - Remove
\Real-Time Protection\
prefix to increase coverage.Example Log Event
N/A
Fixed Issues
N/A
SigmaHQ Rule Creation Conventions