-
-
Notifications
You must be signed in to change notification settings - Fork 2.3k
Pull requests: SigmaHQ/sigma
Author
Label
Projects
Milestones
Reviews
Assignee
Sort
Pull requests list
add poc for simulate this attack
Linux
Pull request add/update linux related rules
Rules
#5441
opened May 29, 2025 by
CheraghiMilad
Loading…
Update MSSQL Server Failed Logon From External Network to filter for local machine without IP
Rules
Windows
Pull request add/update windows related rules
#5440
opened May 28, 2025 by
gregorywychowaniec-zt
Loading…
clear journalctl logs
Linux
Pull request add/update linux related rules
Rules
#5439
opened May 27, 2025 by
CheraghiMilad
Loading…
clean dmesg logs
2nd Review Needed
PR need a second approval
Linux
Pull request add/update linux related rules
Rules
#5438
opened May 27, 2025 by
CheraghiMilad
Loading…
Proc creation win powershell comobject msi
Author Input Required
changes the require information from original author of the rules
Rules
Windows
Pull request add/update windows related rules
#5436
opened May 27, 2025 by
vx3r
Loading…
Adding BITS DLL rule
Author Input Required
changes the require information from original author of the rules
Rules
Windows
Pull request add/update windows related rules
#5434
opened May 24, 2025 by
unicornofhunt
Loading…
feat: BadSuccessor dMSA Abuse for Privileges Escalation
2nd Review Needed
PR need a second approval
Rules
Windows
Pull request add/update windows related rules
#5433
opened May 24, 2025 by
swachchhanda000
Loading…
Abusing of Magic System Request Key
Linux
Pull request add/update linux related rules
Rules
#5432
opened May 23, 2025 by
CheraghiMilad
Loading…
New rules: MeshAgent arguments
MacOS
Pull request add/update macos related rules
Rules
Windows
Pull request add/update windows related rules
#5426
opened May 19, 2025 by
norbert791
Loading…
chore: give back list of promoted rules
2nd Review Needed
PR need a second approval
Maintenance
Related to additions and update of the repository features
#5420
opened May 15, 2025 by
ariel-anieli
Loading…
Detection of SAP NetViewer CVE-2025-31324 exploitation via webserver logs
2nd Review Needed
PR need a second approval
Emerging-Threats
Rules
#5416
opened May 14, 2025 by
swachchhanda000
Loading…
Add correlation rules from AT project
Correlation-Rules
Rules
Windows
Pull request add/update windows related rules
#5415
opened May 13, 2025 by
tonifef
Loading…
Indirect Command Execution via SFTP ProxyCommand
2nd Review Needed
PR need a second approval
Rules
Windows
Pull request add/update windows related rules
#5414
opened May 13, 2025 by
swachchhanda000
Loading…
feat: Mshta suspicious files Execution
2nd Review Needed
PR need a second approval
Rules
Windows
Pull request add/update windows related rules
#5413
opened May 12, 2025 by
swachchhanda000
Loading…
feat: Add more susp registry modifications associated with feature change of windows internal tools
Rules
Windows
Pull request add/update windows related rules
#5412
opened May 12, 2025 by
swachchhanda000
Loading…
Add rule: Office Macro Phishing Initial Access detection
Duplicate
Rules
Windows
Pull request add/update windows related rules
#5411
opened May 10, 2025 by
arjun-tarakesh
Loading…
Fix: image_load/image_load_susp_unsigned_dll: simplify and use valid statu…
Rules
Windows
Pull request add/update windows related rules
#5410
opened May 8, 2025 by
Ti-R
Loading…
New Google Workspace rules
2nd Review Needed
PR need a second approval
Cloud
Pull request add/update cloud related rules
Rules
#5409
opened May 7, 2025 by
Luke57
Loading…
Export deprecated rules in JSON
Maintenance
Related to additions and update of the repository features
Ready to Merge
Rules
#5402
opened May 4, 2025 by
ariel-anieli
Loading…
Add more keys concerned with lsa ppl protection
2nd Review Needed
PR need a second approval
Rules
Windows
Pull request add/update windows related rules
#5399
opened May 1, 2025 by
swachchhanda000
Loading…
Add CVE-2025-24054 Library-MS creation rule
Emerging-Threats
Rules
#5391
opened Apr 29, 2025 by
gkazimiarovich
Loading…
feat: SAP Netweaver CVE-2025-31324 Potential Exploitation
2nd Review Needed
PR need a second approval
Emerging-Threats
Rules
#5387
opened Apr 28, 2025 by
swachchhanda000
Loading…
Add New Rules
Emerging-Threats
Rules
Windows
Pull request add/update windows related rules
Work In Progress
Some changes are needed
Previous Next
ProTip!
Filter pull requests by the default branch with base:master.