mirror of
https://github.com/splunk/security_content
synced 2026-06-08 17:32:49 +00:00
Update windows_application_layer_protocol_rms_radmin_tool_namedpipe.yml
This commit is contained in:
+2
-2
@@ -34,7 +34,7 @@ tags:
|
||||
confidence: 90
|
||||
context:
|
||||
- Source:Endpoint
|
||||
- Stage:Command and Control
|
||||
- Stage:Command And Control
|
||||
dataset:
|
||||
- https://media.githubusercontent.com/media/splunk/attack_data/master/datasets/malware/azorult/sysmon.log
|
||||
impact: 90
|
||||
@@ -63,4 +63,4 @@ tags:
|
||||
- Computer
|
||||
- UserID
|
||||
risk_score: 81
|
||||
security_domain: endpoint
|
||||
security_domain: endpoint
|
||||
|
||||
Reference in New Issue
Block a user