mirror of
https://github.com/splunk/security_content
synced 2026-06-08 17:32:49 +00:00
Added detection testing service results inMalicious PowerShell Process - Execution Policy Bypass
This commit is contained in:
@@ -41,3 +41,6 @@ tags:
|
||||
- PR.IP
|
||||
security_domain: endpoint
|
||||
asset_type: Endpoint
|
||||
automated_detection_testing: passed
|
||||
dataset:
|
||||
- https://attack-range-attack-data.s3-us-west-2.amazonaws.com/T1059.001/windows-sysmon.log
|
||||
|
||||
Reference in New Issue
Block a user