elastic / detection-rules

https://www.elastic.co/guide/en/security/current/detection-engine-overview.html
Other
1.92k stars 492 forks source link

[New Hunt] Persistence through System V Init #3871

Closed Aegrah closed 3 months ago

Aegrah commented 3 months ago

Summary

I am adding this rule as we forgot it during the initial phase. Additionally, we found a bug in the markdown generator that will generate different markdown based on whether it is ran on MacOS or Windows. @terrancedejesus will open a bug issue to fix this.