Skip to content

Pull requests: SigmaHQ/sigma

Author
Filter by author
Loading
Label
Filter by label
Loading
Use alt + click/return to exclude labels
or + click/return for logical OR
Projects
Filter by project
Loading
Milestones
Filter by milestone
Loading
Reviews
Assignee
Filter by who’s assigned
Assigned to nobody Loading
Sort

Pull requests list

add poc for simulate this attack Linux Pull request add/update linux related rules Rules
#5441 opened May 29, 2025 by CheraghiMilad Loading…
Update MSSQL Server Failed Logon From External Network to filter for local machine without IP Rules Windows Pull request add/update windows related rules
#5440 opened May 28, 2025 by gregorywychowaniec-zt Loading…
clear journalctl logs Linux Pull request add/update linux related rules Rules
#5439 opened May 27, 2025 by CheraghiMilad Loading…
clean dmesg logs 2nd Review Needed PR need a second approval Linux Pull request add/update linux related rules Rules
#5438 opened May 27, 2025 by CheraghiMilad Loading…
Proc creation win powershell comobject msi Author Input Required changes the require information from original author of the rules Rules Windows Pull request add/update windows related rules
#5436 opened May 27, 2025 by vx3r Loading…
Adding BITS DLL rule Author Input Required changes the require information from original author of the rules Rules Windows Pull request add/update windows related rules
#5434 opened May 24, 2025 by unicornofhunt Loading…
feat: BadSuccessor dMSA Abuse for Privileges Escalation 2nd Review Needed PR need a second approval Rules Windows Pull request add/update windows related rules
#5433 opened May 24, 2025 by swachchhanda000 Loading…
Abusing of Magic System Request Key Linux Pull request add/update linux related rules Rules
#5432 opened May 23, 2025 by CheraghiMilad Loading…
New rules: MeshAgent arguments MacOS Pull request add/update macos related rules Rules Windows Pull request add/update windows related rules
#5426 opened May 19, 2025 by norbert791 Loading…
chore: give back list of promoted rules 2nd Review Needed PR need a second approval Maintenance Related to additions and update of the repository features
#5420 opened May 15, 2025 by ariel-anieli Loading…
Add correlation rules from AT project Correlation-Rules Rules Windows Pull request add/update windows related rules
#5415 opened May 13, 2025 by tonifef Loading…
Indirect Command Execution via SFTP ProxyCommand 2nd Review Needed PR need a second approval Rules Windows Pull request add/update windows related rules
#5414 opened May 13, 2025 by swachchhanda000 Loading…
feat: Mshta suspicious files Execution 2nd Review Needed PR need a second approval Rules Windows Pull request add/update windows related rules
#5413 opened May 12, 2025 by swachchhanda000 Loading…
feat: Add more susp registry modifications associated with feature change of windows internal tools Rules Windows Pull request add/update windows related rules
#5412 opened May 12, 2025 by swachchhanda000 Loading…
Add rule: Office Macro Phishing Initial Access detection Duplicate Rules Windows Pull request add/update windows related rules
#5411 opened May 10, 2025 by arjun-tarakesh Loading…
Fix: image_load/image_load_susp_unsigned_dll: simplify and use valid statu… Rules Windows Pull request add/update windows related rules
#5410 opened May 8, 2025 by Ti-R Loading…
New Google Workspace rules 2nd Review Needed PR need a second approval Cloud Pull request add/update cloud related rules Rules
#5409 opened May 7, 2025 by Luke57 Loading…
Export deprecated rules in JSON Maintenance Related to additions and update of the repository features Ready to Merge Rules
#5402 opened May 4, 2025 by ariel-anieli Loading…
Add more keys concerned with lsa ppl protection 2nd Review Needed PR need a second approval Rules Windows Pull request add/update windows related rules
#5399 opened May 1, 2025 by swachchhanda000 Loading…
Update cisco_cli_modify_config.yml Rules
#5386 opened Apr 28, 2025 by EzLucky Loading…
Add New Rules Emerging-Threats Rules Windows Pull request add/update windows related rules Work In Progress Some changes are needed
#5384 opened Apr 25, 2025 by nasbench Draft
Add CVE-2025-24985 detection rule
#5383 opened Apr 23, 2025 by douglasrose75 Loading…
ProTip! Filter pull requests by the default branch with base:master.